What the vulnerability does

01Description

A Protection Mechanism Failure issue was discovered in OSIsoft PI Vision versions 2017 and prior. The X-XSS-Protection response header is not set to block, allowing attempts at reflected cross-site scripting.

Key dates

02Disclosure timeline

March 14, 2018 CVE published
August 5, 2024 Record updated