CVE-2020-10602: Null Pointer Dereference
In OSIsoft PI System multiple products and versions, an authenticated remote attacker could crash PI Network Manager due to a race condition. This can result in blocking connections and queries to PI Data Archive.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-10602?
CVE-2020-10602 has a high severity rating due to its potential to crash PI Network Manager, impacting access to PI Data Archive.
How do I fix CVE-2020-10602?
To mitigate CVE-2020-10602, upgrade all affected OSIsoft products to the latest versions that contain the security patches.
What products are affected by CVE-2020-10602?
CVE-2020-10602 affects multiple OSIsoft products, including PI Data Archive, PI AF Client, and various PI Connectors.
Who can exploit CVE-2020-10602?
An authenticated remote attacker can exploit CVE-2020-10602 due to the race condition vulnerability within the system.
What happens if CVE-2020-10602 is successfully exploited?
Exploiting CVE-2020-10602 can cause the PI Network Manager to crash, resulting in blocked connections and queries to the PI Data Archive.