CVE-2024-3468

There is a vulnerability in AVEVA PI Web API that could allow malicious code to execute on the PI Web API environment under the privileges of an interactive user that was socially engineered to use API XML import functionality with content supplied by an attacker.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2024-06-12 21:15

Updated : 2024-06-13 18:36


NVD link : CVE-2024-3468

Mitre link : CVE-2024-3468

CVE.ORG link : CVE-2024-3468


JSON object : View

Products Affected

No product.

CWE
CWE-502

Deserialization of Untrusted Data