CVE-2016-4518
medium
CVSS v3
6.5
CVSS v2
4.0
VIR risk
6.5
Description
OSIsoft PI AF Server before 2016 2.8.0 allows remote authenticated users to cause a denial of service (service outage) via a message.
Predictions
Exploit likelihood
75%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: ics-cert@hq.dhs.gov — https://techsupport.osisoft.com/Troubleshooting/Alerts/AL00301
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| osisoft | pi_af_server_2016 | {"endIncluding":"2.7.0"} | |
References
CWEs
CWE-20
Verify integrity in audit chain (admin only). AS-IS.