PTC kayıtları
ptc üreticisine ait 36 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 1 · %2,8
- Silahlaştırılmış
- 1 · %2,8
- Pre-auth RCE
- 8
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- 8 gün
Tekrar eden sınıflar
- CWE-122 Heap-based Buffer Overflow3
- CWE-306 Missing Authentication for Critical Function3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-121 Stack-based Buffer Overflow2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
36 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
81Hemen | CVE-2026-12569Silahlaştırılmış | Remote Code Execution (RCE) vulnerability in Windchill PDMlinkptc · flexplm · CWE-20 | Kritik9,3 | KEV | %46,0 | 17 Haz 2026 |
43Planlayın | CVE-2023-0755İstismar yok | The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remotege · digital industrial gateway server · CWE-129 | Kritik9,8 | — | %11,8 | 23 Şub 2023 |
42Planlayın | CVE-2020-27265İstismar yok | KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All verge · industrial gateway server · CWE-121 | Kritik9,8 | — | %10,1 | 13 Oca 2021 |
40Planlayın | CVE-2022-25247İstismar yok | PTC Axeda agent and Axeda Desktop Server Missing Authentication For Critical Functionptc · axeda agent · CWE-306 | Kritik9,8 | — | %4,1 | 16 Mar 2022 |
40Planlayın | CVE-2022-2825İstismar yok | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.ge · industrial gateway server · CWE-121 | Kritik9,8 | — | %3,4 | 29 Mar 2023 |
40Planlayın | CVE-2023-0754İstismar yok | The affected products are vulnerable to an integer overflow or wraparound, which could allow an attacker to crash the server and remotely ge · digital industrial gateway server · CWE-190 | Kritik9,8 | — | %2,9 | 23 Şub 2023 |
40Planlayın | CVE-2022-25251İstismar yok | PTC Axeda agent and Axeda Desktop Server Missing Authentication For Critical Functionptc · axeda agent · CWE-306 | Kritik9,8 | — | %1,9 | 16 Mar 2022 |
39İzleyin | CVE-2023-27881İstismar yok | PTC Vuforia Studio Unrestricted Upload of File with Dangerous Typeptc · vuforia studio · CWE-434 | Kritik9,9 | — | %0,7 | 7 Haz 2023 |
37İzleyin | CVE-2020-27263İstismar yok | KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All verge · industrial gateway server · CWE-122 | Kritik9,1 | — | %4,9 | 13 Oca 2021 |
37İzleyin | CVE-2020-27267İstismar yok | KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggregator (all versge · industrial gateway server · CWE-416 | Kritik9,1 | — | %4,9 | 13 Oca 2021 |
37İzleyin | CVE-2022-2848İstismar yok | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.ge · industrial gateway server · CWE-122 | Kritik9,1 | — | %3,4 | 29 Mar 2023 |
36İzleyin | CVE-2022-25246İstismar yok | PTC Axeda agent and Axeda Desktop Server Use of Hard-Coded Credentialsptc · axeda agent · CWE-798 | Yüksek8,8 | — | %1,8 | 16 Mar 2022 |
36İzleyin | CVE-2023-5908İstismar yok | Heap Based Buffer Overflow in PTC KEPServerExge · industrial gateway server · CWE-122 | Kritik9,1 | — | %1,0 | 30 Kas 2023 |
32İzleyin | CVE-2023-29152İstismar yok | PTC Vuforia Studio Improper Authorizationptc · vuforia studio · CWE-285 | Yüksek8,1 | — | %0,4 | 7 Haz 2023 |
32İzleyin | CVE-2023-31200İstismar yok | PTC Vuforia Studio Cross-Site Request Forgeryptc · vuforia studio · CWE-352 | Yüksek8,0 | — | %0,2 | 7 Haz 2023 |
31İzleyin | CVE-2015-2061İstismar yok | Heap-based buffer overflow in the browser plugin for PTC Creo View allows remote attackers to execute arbitrary code via vectors involving sptc · creo view · CWE-119 | Yüksek7,5 | — | %3,9 | 9 Mar 2015 |
31İzleyin | CVE-2022-25249İstismar yok | PTC Axeda agent and Axeda Desktop Server Path Traversalptc · axeda agent · CWE-22 | Yüksek7,5 | — | %2,5 | 16 Mar 2022 |
31İzleyin | CVE-2018-20092İstismar yok | PTC ThingWorx Platform through 8.3.0 is vulnerable to a directory traversal attack on ZIP files via a POST request.ptc · thingworx platform · CWE-22 | Yüksek7,5 | — | %2,2 | 17 Ara 2018 |
31İzleyin | CVE-2023-29445İstismar yok | Uncontrolled Search Path Element in PTC's Kepware KEPServerEXptc · kepware kepserverex · CWE-427 | Yüksek7,8 | — | %0,2 | 10 Oca 2024 |
30İzleyin | CVE-2022-25250İstismar yok | PTC Axeda agent and Axeda Desktop Server Missing Authentication For Critical Functionptc · axeda agent · CWE-306 | Yüksek7,5 | — | %1,7 | 16 Mar 2022 |
30İzleyin | CVE-2022-25252İstismar yok | PTC Axeda agent and Axeda Desktop Server Improper Check or Handling Of Exceptional Conditionsptc · axeda agent · CWE-703 | Yüksek7,5 | — | %1,6 | 16 Mar 2022 |
30İzleyin | CVE-2018-17217İstismar yok | An issue was discovered in PTC ThingWorx Platform 6.5 through 8.2.ptc · thingworx platform · CWE-798 | Yüksek7,5 | — | %0,8 | 30 Eyl 2018 |
30İzleyin | CVE-2023-29168İstismar yok | PTC Vuforia Studio Insufficiently Protected Credentialsptc · vuforia studio · CWE-522 | Yüksek7,5 | — | %0,5 | 7 Haz 2023 |
30İzleyin | CVE-2023-5909İstismar yok | Improper Validation of Certificate with Host Mismatch in PTC KEPServerExge · industrial gateway server · CWE-297 | Yüksek7,5 | — | %0,4 | 30 Kas 2023 |
29İzleyin | CVE-2023-29444İstismar yok | Uncontrolled Search Path Element in PTC's Kepware KEPServerEXptc · kepware kepserverex · CWE-427 | Yüksek7,3 | — | %0,2 | 10 Oca 2024 |
- CVE-2026-1256981Hemen
Remote Code Execution (RCE) vulnerability in Windchill PDMlink
KritikCVSS 9,3KEVSilahlaştırılmışEPSS %46ptc · flexplm17 Haz 2026
- CVE-2023-075543Planlayın
The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remote
KritikCVSS 9,8İstismar yokEPSS %12ge · digital industrial gateway server23 Şub 2023
- CVE-2020-2726542Planlayın
KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All ver
KritikCVSS 9,8İstismar yokEPSS %10ge · industrial gateway server13 Oca 2021
- CVE-2022-2524740Planlayın
PTC Axeda agent and Axeda Desktop Server Missing Authentication For Critical Function
KritikCVSS 9,8İstismar yokEPSS %4ptc · axeda agent16 Mar 2022
- CVE-2022-282540Planlayın
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.
KritikCVSS 9,8İstismar yokEPSS %3ge · industrial gateway server29 Mar 2023
- CVE-2023-075440Planlayın
The affected products are vulnerable to an integer overflow or wraparound, which could allow an attacker to crash the server and remotely
KritikCVSS 9,8İstismar yokEPSS %3ge · digital industrial gateway server23 Şub 2023
- CVE-2022-2525140Planlayın
PTC Axeda agent and Axeda Desktop Server Missing Authentication For Critical Function
KritikCVSS 9,8İstismar yokEPSS %2ptc · axeda agent16 Mar 2022
- CVE-2023-2788139İzleyin
PTC Vuforia Studio Unrestricted Upload of File with Dangerous Type
KritikCVSS 9,9İstismar yokEPSS %1ptc · vuforia studio7 Haz 2023
- CVE-2020-2726337İzleyin
KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All ver
KritikCVSS 9,1İstismar yokEPSS %5ge · industrial gateway server13 Oca 2021
- CVE-2020-2726737İzleyin
KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggregator (all vers
KritikCVSS 9,1İstismar yokEPSS %5ge · industrial gateway server13 Oca 2021
- CVE-2022-284837İzleyin
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.
KritikCVSS 9,1İstismar yokEPSS %3ge · industrial gateway server29 Mar 2023
- CVE-2022-2524636İzleyin
PTC Axeda agent and Axeda Desktop Server Use of Hard-Coded Credentials
YüksekCVSS 8,8İstismar yokEPSS %2ptc · axeda agent16 Mar 2022
- CVE-2023-590836İzleyin
Heap Based Buffer Overflow in PTC KEPServerEx
KritikCVSS 9,1İstismar yokEPSS %1ge · industrial gateway server30 Kas 2023
- CVE-2023-2915232İzleyin
PTC Vuforia Studio Improper Authorization
YüksekCVSS 8,1İstismar yokEPSS %0ptc · vuforia studio7 Haz 2023
- CVE-2023-3120032İzleyin
PTC Vuforia Studio Cross-Site Request Forgery
YüksekCVSS 8,0İstismar yokEPSS %0ptc · vuforia studio7 Haz 2023
- CVE-2015-206131İzleyin
Heap-based buffer overflow in the browser plugin for PTC Creo View allows remote attackers to execute arbitrary code via vectors involving s
YüksekCVSS 7,5İstismar yokEPSS %4ptc · creo view9 Mar 2015
- CVE-2022-2524931İzleyin
PTC Axeda agent and Axeda Desktop Server Path Traversal
YüksekCVSS 7,5İstismar yokEPSS %2ptc · axeda agent16 Mar 2022
- CVE-2018-2009231İzleyin
PTC ThingWorx Platform through 8.3.0 is vulnerable to a directory traversal attack on ZIP files via a POST request.
YüksekCVSS 7,5İstismar yokEPSS %2ptc · thingworx platform17 Ara 2018
- CVE-2023-2944531İzleyin
Uncontrolled Search Path Element in PTC's Kepware KEPServerEX
YüksekCVSS 7,8İstismar yokEPSS %0ptc · kepware kepserverex10 Oca 2024
- CVE-2022-2525030İzleyin
PTC Axeda agent and Axeda Desktop Server Missing Authentication For Critical Function
YüksekCVSS 7,5İstismar yokEPSS %2ptc · axeda agent16 Mar 2022
- CVE-2022-2525230İzleyin
PTC Axeda agent and Axeda Desktop Server Improper Check or Handling Of Exceptional Conditions
YüksekCVSS 7,5İstismar yokEPSS %2ptc · axeda agent16 Mar 2022
- CVE-2018-1721730İzleyin
An issue was discovered in PTC ThingWorx Platform 6.5 through 8.2.
YüksekCVSS 7,5İstismar yokEPSS %1ptc · thingworx platform30 Eyl 2018
- CVE-2023-2916830İzleyin
PTC Vuforia Studio Insufficiently Protected Credentials
YüksekCVSS 7,5İstismar yokEPSS %0ptc · vuforia studio7 Haz 2023
- CVE-2023-590930İzleyin
Improper Validation of Certificate with Host Mismatch in PTC KEPServerEx
YüksekCVSS 7,5İstismar yokEPSS %0ge · industrial gateway server30 Kas 2023
- CVE-2023-2944429İzleyin
Uncontrolled Search Path Element in PTC's Kepware KEPServerEX
YüksekCVSS 7,3İstismar yokEPSS %0ptc · kepware kepserverex10 Oca 2024