Description
OSIsoft PI AF 2.6 and 2.7 and PI SQL for AF 2.1.2.19 do not ensure that the PI SQL (AF) Trusted Users group lacks the Everyone account, which allows remote authenticated users to bypass intended command restrictions via SQL statements.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-1157 | OSIsoft PI AF 2.6 and 2.7 and PI SQL for AF 2.1.2.19 do not ensure that the PI SQL (AF) Trusted Users group lacks the Everyone account, which allows remote authenticated users to bypass intended command restrictions via SQL statements. |
References
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-06T04:26:11.576Z
Reserved: 2015-01-10T00:00:00.000Z
Link: CVE-2015-1013
No data.
Status : Modified
Published: 2015-05-26T01:59:01.743
Modified: 2026-05-06T22:30:45.220
Link: CVE-2015-1013
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD