What the vulnerability does

01Description

A Cross-Site Request Forgery issue was discovered in OSIsoft PI Web API versions prior to 2017 (1.9.0). The vulnerability allows cross-site request forgery (CSRF) attacks to occur when an otherwise-unauthorized cross-site request is sent from a browser the server has previously authenticated.

Key dates

02Disclosure timeline

August 25, 2017 CVE published
August 5, 2024 Record updated

Related vulnerabilities

04Related CVE