PI Server in OSIsoft PI System before 3.4.380.x does not properly use encryption in the default authentication process, which allows remote attackers to read or modify information in databases via unspecified vectors.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:59
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/archive/1/506826/100/0/threaded - |
Information
Published : 2009-10-01 15:30
Updated : 2024-11-21 00:59
NVD link : CVE-2009-0209
Mitre link : CVE-2009-0209
CVE.ORG link : CVE-2009-0209
JSON object : View
Products Affected
osisoft
- pi_server
CWE
CWE-310
Cryptographic Issues