An Information Exposure issue was discovered in OSIsoft PI Vision versions 2017 and prior. The server response header and referrer-policy response header each provide unintended information disclosure.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/103390 | vdb entry third party advisory |
https://ics-cert.us-cert.gov/advisories/ICSA-18-072-03 | us government resource third party advisory mitigation |