Your review has been sent successfully

PTC Updates

1940
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

20 December, 2020

● High

2020-2231

All

Description:

PTC has released security update to address a vulnerability in the following products:

  • Kepware LinkMaster Version 3.0.94.0 and prior

Kepware KEPServerEX, a connectivity platform:

  • KEPServerEX: v6.0 to v6.9
  • ThingWorx Kepware Server: v6.8 and v6.9
  • ThingWorx Industrial Connectivity: All versions
  • OPC-Aggregator: All versions

The following products may have a vulnerable component:

  • Rockwell Automation KEPServer Enterprise
  • GE Digital Industrial Gateway Server: v7.68.804 and v7.66
  • Software Toolbox TOP Server: All 6.x versions

Threats:

Attacker could exploit these vulnerabilities by doing the following:

  • Denial of service attack (DoS)
  • Buffer overflow
  • Execute arbitrary code - remotely

Best practice and Recommendations:

The CERT team encourages users to review PTC security advisory and apply the necessary updates:

PTC recommends that users of the following products upgrade to the most current supported version:

Last updated at 20 December, 2020

Rate the content

rate-icon
up icon