VYPR
Unrated severityNVD Advisory· Published Oct 1, 2009· Updated Jun 16, 2026

CVE-2009-0209

CVE-2009-0209

Description

PI Server in OSIsoft PI System before 3.4.380.x does not properly use encryption in the default authentication process, which allows remote attackers to read or modify information in databases via unspecified vectors.

Affected products

7
  • Osisoft/Pi Server7 versions
    cpe:2.3:a:osisoft:pi_server:2.4:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:osisoft:pi_server:2.4:*:*:*:*:*:*:*
    • cpe:2.3:a:osisoft:pi_server:2.6:*:*:*:*:*:*:*
    • cpe:2.3:a:osisoft:pi_server:3.4.363.97:*:*:*:*:*:*:*
    • cpe:2.3:a:osisoft:pi_server:3.4.370:*:*:*:*:*:*:*
    • cpe:2.3:a:osisoft:pi_server:3.4.375.99:sp2:64bit_windows:*:*:*:*:*
    • cpe:2.3:a:osisoft:pi_server:*:sp2:32bit_windows:*:*:*:*:*range: <=3.4.375.99
    • (no CPE)range: <3.4.380.x

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.