CVE-2025-4418: Aveva Pi Connector For Cygnet

Medium severity, CVSS 4.4. EPSS: 0.1% chance of exploitation in the next 30 days.

An improper validation of integrity check value vulnerability exists in AVEVA PI Connector for CygNet Versions 1.6.14 and prior that, if exploited, could allow a miscreant with elevated privileges to modify PI Connector for CygNet local data files (cache and buffers) in a way that causes the connector service to become unresponsive.

Affected products

  • Aveva Pi Connector For Cygnet: up to and including 1.6.14

Published 2025-06-12. Last modified 2026-06-17.