如果该漏洞被利用,任何拥有 PIMBoards 项目文件读取权限的人可以通过对弱哈希值进行计算型暴力破解,反向工程 PIMBoards 用户的本地应用密码,从而可能将其提升为 PIMBoards 管理员用户。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| AVEVA | Pipeline Integrity Monitor | ≤ Versions 2025 SP1 P1 (build 7.1.9580.8513) |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| AVEVA | Pipeline Integrity Monitor | 0 ~ Versions 2025 SP1 P1 (build 7.1.9580.8513) | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-81821 | 8.4 HIGH | AVEVA Pipeline Integrity Monitor Use of hard-coded cryptographic key |
| CVE-2026-81823 | 5.3 MEDIUM | AVEVA Pipeline Integrity Monitor Missing Authorization |
| CVE-2026-81824 | 4.7 MEDIUM | AVEVA Pipeline Integrity Monitor cross-site scripting |
No comments yet