OSIsoft PI Vision, versions PI Vision 2017, and PI Vision 2017 R2, The application contains a cross-site scripting vulnerability where displays that reference AF elements and attributes containing JavaScript are affected. This vulnerability requires the ability of authorized AF users to store JavaScript in AF elements and attributes.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-19-043-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2019-04-08T14:30:39
Updated: 2024-08-05T11:23:09.033Z
Reserved: 2018-11-06T00:00:00
Link: CVE-2018-19006
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-04-08T15:29:00.763
Modified: 2024-11-21T03:57:09.090
Link: CVE-2018-19006
Redhat
No data.