CVE-2023-31274

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Jan 18, 2024
Updated: Jan 26, 2024
CWE ID 772

Summary

CVE-2023-31274 is a vulnerability affecting AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior. This issue enables unauthenticated users to trigger the PI Message Subsystem of a PI Server to consume an excessive amount of memory. The consequence is a partial denial-of-service condition where new PI Data Archive events face throttled processing.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share