Known vulnerabilities in Kepware KepServerEX
Vendor:
PTC
Software:
Kepware KepServerEX
Software CPE:
cpe:2.3:a:ptc:kepware_kepserverex:*:*:*:*:*:*:*:*
Website:
https://www.ptc.com/
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU83637 - Improper Validation of Certificate with Host Mismatch CVE-2023-5909 |
CWE-297 | Medium | 6.15 | 04.12.2023 |
SB2023120409 SB2023120510 SB2023120512 and 1 more |
||
| #VU83635 - Heap-based Buffer Overflow CVE-2023-5908 |
CWE-122 | High | 6.15 | 04.12.2023 |
SB2023120409 SB2023120510 SB2023120512 and 1 more |
||
| #VU80226 - Insufficiently Protected Credentials CVE-2023-29447 |
CWE-522 | Medium | - | 01.09.2023 |
SB2023090139 |
||
| #VU80225 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2023-29446 |
CWE-22 | Medium | - | 01.09.2023 |
SB2023090139 |
||
| #VU80224 - Uncontrolled Search Path Element CVE-2023-29445 |
CWE-427 | Low | - | 01.09.2023 |
SB2023090139 |
||
| #VU80223 - Uncontrolled Search Path Element CVE-2023-29444 |
CWE-427 | Low | - | 01.09.2023 |
SB2023090139 |