← Back to home
ICSA-23-208-02  ·  Published 2023-07-27  ·  View on CISA ICS-CERT ↗

PTC KEPServerEX

CVSS 7.5 HIGH

Risk Summary

Successful exploitation of this vulnerability could result in the affected device crashing.

CVEs (1)

Remediations

  • PTC wishes to inform users that the attack vector leveraged during the research involved an un-authenticated OPC UA Client. Standard controls available in the product and outlined in the Secure Deployment guide are sufficient to mitigate this vulnerability. Please refer to this article for additional details.

Affected Vendors

PTC

Affected Products (1)

PTC · KEPServerEX >= 6.0 | < 6.14.263

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more