CVE-2026-81822
AVEVA Pipeline Integrity Monitor Use of a Broken or Risky Cryptographic Algorithm
CVSS Score
8.4
EPSS Score
0.0%
EPSS Percentile
0th
The vulnerability, if exploited, could allow a miscreant with read access to PIMBoards project files to reverse engineer PIMBoards users’ app-native passwords through computational brute-forcing of weak hashes, potentially allowing elevation to a PIMBoards administrator user.
| CWE | CWE-327 |
| Vendor | aveva |
| Product | pipeline integrity monitor |
| Published | Sep 8, 2026 |
| Last Updated | Sep 11, 2026 |
Stay Ahead of the Next One
Get instant alerts for aveva pipeline integrity monitor
Be the first to know when new high vulnerabilities affecting aveva pipeline integrity monitor are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
None
Affected Versions
AVEVA / Pipeline Integrity Monitor
0 ≤ Versions 2025 SP1 P1 (build 7.1.9580.8513)
References
aveva.com: https://www.aveva.com/content/dam/aveva/documents/support/cyber-security-updates/SecurityBulletin_AVEVA-2026-006.pdf cisa.gov: https://www.cisa.gov/news-events/ics-advisories/icsa-26-253-01 github.com: https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-253-01.json
Credits
Self-discovered and self-reported in accordance with AVEVA’s Ethical Disclosure Policy to inform administrators of potential risks, so that they can take actions to minimize the effects of the vulnerabilities.