An improper validation of integrity check value vulnerability exists in AVEVA PI Connector for CygNet Versions 1.6.14 and prior that, if exploited, could allow a miscreant with elevated privileges to modify PI Connector for CygNet local data files (cache and buffers) in a way that causes the connector service to become unresponsive.
History

Thu, 12 Jun 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 12 Jun 2025 19:45:00 +0000

Type Values Removed Values Added
Description An improper validation of integrity check value vulnerability exists in AVEVA PI Connector for CygNet Versions 1.6.14 and prior that, if exploited, could allow a miscreant with elevated privileges to modify PI Connector for CygNet local data files (cache and buffers) in a way that causes the connector service to become unresponsive.
Title AVEVA PI Connector for CygNet Improper Validation of Integrity Check Value
Weaknesses CWE-354
References
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H'}

cvssV4_0

{'score': 6.7, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2025-06-12T19:37:46.740Z

Updated: 2025-06-12T19:54:54.525Z

Reserved: 2025-05-07T18:16:55.551Z

Link: CVE-2025-4418

cve-icon Vulnrichment

Updated: 2025-06-12T19:54:00.441Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-06-12T20:15:21.943

Modified: 2025-06-16T12:32:18.840

Link: CVE-2025-4418

cve-icon Redhat

No data.