CVE-2023-29447
Insufficiently Protected Credentials in PTC's Kepware KEPServerEX
An insufficiently protected credentials vulnerability in KEPServerEX could allow an adversary to capture user credentials as the web server uses basic authentication.
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Affected products
PTC · Kepware KEPServerEXPTC · ThingWorx Industrial ConnectivityPTC · ThingWorx Kepware ServerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →