Pi data archive
This hub aggregates every CVE we track for Pi data archive, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
13
CVEs tracked
0
Critical
8
High
0
In CISA KEV
Severity distribution
HIGH8MEDIUM5
Monthly trend
0
0
0
0
0
0
0
0
2
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 13 most recently published vulnerabilities affecting Pi data archive.
- CVE-2025-36539AVEVA PI Data Archive Uncaught Exception6.5
- CVE-2025-44019AVEVA PI Data Archive Uncaught Exception7.1
- CVE-2020-10604In OSIsoft PI System multiple products and versions, a remote, unauthenticated attacker could crash PI Network Manager service through specially crafted requests. This can result in blocking connec...7.5
- CVE-2020-10600OSIsoft PI System5.9
- CVE-2020-10606In OSIsoft PI System multiple products and versions, a local attacker can exploit incorrect permissions set by affected PI System software. This exploitation can result in unauthorized information ...7.8
- CVE-2020-10608In OSIsoft PI System multiple products and versions, a local attacker can plant a binary and bypass a code integrity check for loading PI System libraries. This exploitation can target another loca...7.8
- CVE-2020-10610In OSIsoft PI System multiple products and versions, a local attacker can modify a search path and plant a binary to exploit the affected PI System software to take control of the local computer at...7.8
- CVE-2016-8365OSIsoft PI System software (Applications using PI Asset Framework (AF) Client versions prior to PI AF Client 2016, Version 2.8.0; Applications using PI Software Development Kit (SDK) versions prior...5.5
- CVE-2018-7529A Deserialization of Untrusted Data issue was discovered in OSIsoft PI Data Archive versions 2017 and prior. Unauthenticated users may modify deserialized data to send custom requests that crash th...7.5
- CVE-2018-7531An Improper Input Validation issue was discovered in OSIsoft PI Data Archive versions 2017 and prior. Unauthenticated users may use unvalidated custom requests to crash the server.5.9
- CVE-2018-7533An Incorrect Default Permissions issue was discovered in OSIsoft PI Data Archive versions 2017 and prior. Insecure default configuration may allow escalation of privileges that gives the actor full...7.8
- CVE-2017-7930An Improper Authentication issue was discovered in OSIsoft PI Server 2017 PI Data Archive versions prior to 2017. PI Data Archive has protocol flaws with the potential to expose change records in t...7.4
- CVE-2017-7934An Improper Authentication issue was discovered in OSIsoft PI Server 2017 PI Data Archive versions prior to 2017. PI Network Manager using older protocol versions contains a flaw that could allow a...5.9
Product normalization is registry-driven with AI assist and human review. How it works