CVE-2023-0755
33Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 9.8epss 12%
probabilidad de explotación
12%top 4% de las CVE
explotación observada
noninguna fuente lo reporta
The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remotely execute arbitrary code.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
General Electric · Digital Industrial Gateway ServerMicrosoft · .NET-SDKPTC · Kepware KEPServerEXPTC · ThingWorx Edge C-SDKPTC · ThingWorx Edge MicroServer (EMS)PTC · ThingWorx Industrial ConnectivityPTC · ThingWorx Kepware EdgePTC · ThingWorx Kepware ServerRockwell Automation · KEPServer Enterprise