AVEVA Pipeline Integrity Monitor
ID: 868178b4-bebc-5367-8a90-3f988177fcdc
STIX ID: report--868178b4-bebc-5367-8a90-3f988177fcdc
Feed Name: CISA Advisories
CISA published a bulletin detailing four high-severity vulnerabilities in AVEVA Pipeline Integrity Monitor (affected versions up to 2025_SP1_P1_build_7.1.9580.8513) — including hard-coded cryptographic keys, weak cryptography, missing authorization, and XSS — that could lead to information disclosure, hash brute-force, unauthorized read access, or arbitrary code execution in browser sessions; CVSSv3 score noted as 8.4, mitigations and recommended defensive practices are provided, and no known public exploitation has been reported.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
