CVE 7.1 HIGH

AVEVA PI Integrator Unrestricted Upload of File with Dangerous Type_CVE-2025-54460

7.1 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L

Description

The vulnerability, if exploited, could allow an authenticated miscreant
(with privileges to create or access publication targets of type Text
File or HDFS) to upload and persist files that could potentially be
executed.

Basic Information

ID CVE-2025-54460
Source icscert
Published Aug 21, 2025 at 20:00
Modified Aug 21, 2025 at 20:13

Affected Product

Vendor AVEVA
Product PI Integrator
Affected Versions AVEVA PI Integrator 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.