PTC Alert
2759Warning Date
Severity Level
Warning Number
Target Sector
31 August, 2022
● High
2022-5185
All
Description:
PTC has released security updates to address multiple vulnerability in the following products:
Kepware KEPServerEX, a connectivity platform:
- Kepware KEPServerEX: Versions prior to 6.12
- ThingWorkx Kepware Server: Versions prior to 6.12
- ThingWorkx Industrial Connectivity: All versions
- OPC-Aggregator: Versions prior to 6.12
- ThingWorkx Kepware Edge: Versions 1.4 and prior
- Rockwell Automation KEPServer Enterprise: Versions prior to v6.12
- GE Digital Industrial Gateway Server: Versions prior to v7.612
- Software Toolbox TOP Server: Versions prior to v6.12
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code remotely
Best practice and Recommendations:
The PTC team encourages users to review the security advisory and apply the necessary updates: