osisoft
Security Risk Profile
45
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 54 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 1, 2009 to present
54
Total CVEs
22
Critical+High
1
Exploited
19
Unpatched
Threat Assessment
Avg CVSS
6.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
19
Critical/High
Risk Level
45/100
medium
⚠️ 1 Active Exploits🆕 5Fresh (<7d)📈 5 in Last 30 Days
Severity Distribution
Critical
4High
18Medium
27Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
XSS
12
2
Input Validation
7
3
CSRF
4
4
Null Pointer Dereference
2
5
Buffer Overflow
2
Most Affected Products
1. OSIsoft PI Vision19
2. OSIsoft PI Data Archive14
3. OSIsoft Applications using PI Asset Framework (AF) Client versions prior to and including PI AF Client 2018 SP3 Patch 1, Version 2.10.7.28312
4. OSIsoft Applications using PI Software Development Kit (SDK) versions prior to and including PI SDK 2018 SP1, Version 1.4.7.60212
5. OSIsoft PI API for Windows Integrated Security versions prior to and including 2.0.2.5,12
Recent Vulnerabilities
See more →CVE-2020-25167
CVSS 6.5medium
OSIsoft PI Vision Incorrect Authorization
4/18/2022
CVE-2020-25163
CVSS 7.7high
OSIsoft PI Vision Cross-site Scripting
4/18/2022
CVE-2021-43549
CVSS 6.9medium
OSIsoft PI Web API
11/18/2021🔧 No Patch
CVE-2021-43553
CVSS 4.3medium
OSIsoft PI Vision
11/17/2021
CVE-2021-43551
CVSS 6.5medium
OSIsoft PI Vision
11/17/2021
CVE-2020-10643
CVSS 6.5medium
OSIsoft PI System
7/27/2020
CVE-2020-10614
CVSS 6.4medium
7/24/2020🔧 No Patch
CVE-2020-10604
CVSS 7.5high
7/24/2020🔧 No Patch
CVE-2020-10600
CVSS 7.1high
OSIsoft PI System
7/24/2020
CVE-2020-10602
CVSS 6.5medium
7/24/2020🔧 No Patch
Monitor osisoft in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.