← Back to home
ICSA-24-228-11  ·  Published 2024-08-15  ·  View on CISA ICS-CERT ↗

PTC Kepware ThingWorx Kepware Server

CVSS 5.3 MEDIUM

Risk Summary

Successful exploitation of this vulnerability could crash the target device.

CVEs (1)

Remediations

  • PTC recommends customers take a defense-in-depth stance with regards to their manufacturing networks ensuring proper access control is maintained. Additionally, proper adherence to the Kepware Secure Deployment Guide will minimize this threat through accurate configuration and use of the product.
  • Please refer to this article (login required) for specific information on how this risk may be mitigated in your environment.
  • If additional questions remain, please contact PTC Technical Support.

Affected Vendors

PTC

Affected Products (4)

PTC · PTC Kepware ThingWorx Kepware Server V6
PTC · PTC Kepware KEPServerEX V6
PTC · Software Toolbox TOP Server V6
PTC · GE IGS V7.6x

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more