📦 Thingworx Kepware Server

by Ptc

🔍 What is Thingworx Kepware Server?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-5908

CRITICAL CVSS 9.1 Nov 30, 2023

CVE-2023-5908 is a buffer overflow vulnerability in KEPServerEX that could allow attackers to crash the software or leak sensitive information. This affects industrial control systems using vulnerable...

CVE-2022-2825

CRITICAL CVSS 9.8 Mar 29, 2023

CVE-2022-2825 is a critical buffer overflow vulnerability in Kepware KEPServerEX that allows unauthenticated remote attackers to execute arbitrary code with SYSTEM privileges. The vulnerability exists...

CVE-2020-27263

CRITICAL CVSS 9.1 Jan 14, 2021

A heap-based buffer overflow vulnerability in multiple industrial OPC UA server products allows attackers to crash servers and potentially leak data by sending specially crafted OPC UA messages. This ...

CVE-2020-27267

CRITICAL CVSS 9.1 Jan 14, 2021

A heap-based buffer overflow vulnerability in multiple industrial OPC UA server products allows attackers to crash servers and potentially leak data by sending specially crafted OPC UA messages. This ...

CVE-2023-29445

HIGH CVSS 7.8 Jan 10, 2024

This CVE describes a DLL hijacking vulnerability in PTC's Kepware KEPServerEX software that allows a locally authenticated attacker to escalate privileges to SYSTEM level. The vulnerability affects in...