Vulnerability Details CVE-2023-0755
The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remotely execute arbitrary code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.016
EPSS Ranking 80.7%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-0755
-
cpe:2.3:a:ge:digital_industrial_gateway_server:*
-
cpe:2.3:a:ptc:kepware_server:*
-
cpe:2.3:a:ptc:kepware_serverex:*
-
cpe:2.3:a:ptc:thingworx_.net-sdk:*
-
cpe:2.3:a:ptc:thingworx_edge_c-sdk:*
-
cpe:2.3:a:ptc:thingworx_edge_microserver:*
-
cpe:2.3:a:ptc:thingworx_industrial_connectivity:-
-
cpe:2.3:a:ptc:thingworx_kepware_edge:1.4
-
cpe:2.3:a:rockwellautomation:kepserver_enterprise:6.12
-
cpe:2.3:a:rockwellautomation:kepserver_enterprise:6.6.504.0
-
cpe:2.3:a:rockwellautomation:kepserver_enterprise:6.9.572.0