Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

AVEVA — Vulnerabilities & Security Advisories 47

Browse all 47 CVE security advisories affecting AVEVA. AI-powered Chinese analysis, POCs, and references for each vulnerability.

AVEVA provides industrial software solutions, primarily focusing on process simulation, asset performance management, and engineering design for sectors like oil and gas, chemicals, and pharmaceuticals. Its platform integrates complex operational technology with enterprise information systems, creating a broad attack surface for cyber threats. Historical vulnerability assessments reveal a prevalence of remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from legacy components or improper input validation within its web-based interfaces. While no catastrophic public breaches have been widely attributed solely to AVEVA software, the high volume of recorded CVEs indicates persistent security hygiene challenges. These defects frequently allow unauthenticated attackers to gain unauthorized access or disrupt critical industrial operations, underscoring the necessity for rigorous patch management and network segmentation in environments utilizing these industrial control systems.

Found 7 results / 47 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-64769 AVEVA Process Optimization Cleartext Transmission of Sensitive Information — Process Optimization CWE-319 7.1 High 2026-01-16
CVE-2025-65117 AVEVA Process Optimization Use of Potentially Dangerous Function — Process Optimization CWE-676 7.4 High 2026-01-16
CVE-2025-64729 AVEVA Process Optimization Missing Authorization — Process Optimization CWE-862 8.1 High 2026-01-16
CVE-2025-65118 AVEVA Process Optimization Uncontrolled Search Path Element — Process Optimization CWE-427 8.8 High 2026-01-16
CVE-2025-61943 AVEVA Process Optimization SQL Injection — Process Optimization CWE-89 8.4 High 2026-01-16
CVE-2025-64691 AVEVA Process Optimization Code Injection — Process Optimization CWE-94 8.8 High 2026-01-16
CVE-2025-61937 AVEVA Process Optimization Code Injection — Process Optimization CWE-94 10.0 Critical 2026-01-16

This page lists every published CVE security advisory associated with AVEVA. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.