ZeroHour

CVE-2023-0755

CVSS 3.1
9.8 critical
EPSS
12%p96
Published
()
Modified
Description

The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remotely execute arbitrary code.

Vendors
geptcrockwellautomation
Products
digital industrial gateway server, kepware server, kepware serverex, thingworx .net-sdk, thingworx edge c-sdk, thingworx edge microserver, thingworx industrial connectivity, thingworx kepware edge, kepserver enterprise
Weakness
CWE-129
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.