ZeroHour

CVE-2023-29447

CVSS 3.1
5.3 medium
EPSS
<1%p30
Published
()
Modified
Description

An insufficiently protected credentials vulnerability in KEPServerEX could allow an adversary to capture user credentials as the web server uses basic authentication.

Vendors
ptc
Products
kepware kepserverex, thingworx kepware server, thingworx industrial connectivity
Weakness
CWE-522
Vector
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.