CVE-2023-29447
10.01.2024, 21:15
An insufficiently protected credentials vulnerability in KEPServerEX could allow an adversary to capture user credentials as the web server uses basic authentication.Enginsight
Vendor | Product | Version |
---|---|---|
ptc | kepware_kepserverex | 6.0.2107.0 ≤ 𝑥 ≤ 6.14.263.0 |
ptc | thingworx_kepware_server | 6.8 ≤ 𝑥 ≤ 6.14.263.0 |
ptc | thingworx_industrial_connectivity | 8.0 ≤ 𝑥 ≤ 8.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References