CVE-2023-31274
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Jan 18, 2024
Updated: Jan 26, 2024
CWE ID 772
Summary
CVE-2023-31274 is a vulnerability affecting AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior. This issue enables unauthenticated users to trigger the PI Message Subsystem of a PI Server to consume an excessive amount of memory. The consequence is a partial denial-of-service condition where new PI Data Archive events face throttled processing.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Aveva Group