AVEVA PI Data Archive products are vulnerable to an uncaught exception that, if exploited, could allow an authenticated user to shut down certain necessary PI Data Archive subsystems, resulting in a denial of service. Depending on the timing of the crash, data present in snapshots/write cache may be lost.
History

Thu, 12 Jun 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 12 Jun 2025 20:00:00 +0000

Type Values Removed Values Added
Description AVEVA PI Data Archive products are vulnerable to an uncaught exception that, if exploited, could allow an authenticated user to shut down certain necessary PI Data Archive subsystems, resulting in a denial of service. Depending on the timing of the crash, data present in snapshots/write cache may be lost.
Title AVEVA PI Data Archive Uncaught Exception
Weaknesses CWE-248
References
Metrics cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H'}

cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2025-06-12T19:51:56.663Z

Updated: 2025-06-12T20:06:50.361Z

Reserved: 2025-04-21T19:39:54.994Z

Link: CVE-2025-44019

cve-icon Vulnrichment

Updated: 2025-06-12T20:06:38.665Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-06-12T20:15:21.420

Modified: 2025-06-16T12:32:18.840

Link: CVE-2025-44019

cve-icon Redhat

No data.