First published: Wed Jan 13 2021(Updated: )
KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway Server: v7.68.804 and v7.66, Software Toolbox TOP Server: All 6.x versions are vulnerable to a stack-based buffer overflow. Opening a specifically crafted OPC UA message could allow an attacker to crash the server and remotely execute code.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
PTC KEPServerEX: v6.0 to v6.9 | ||
PTC ThingWorx Kepware Server | =6.8 and v6.9 | |
PTC ThingWorx Industrial Connectivity | ||
PTC OPC-Aggregator | ||
Ge Industrial Gateway Server | =7.66 | |
Ge Industrial Gateway Server | =7.68.804 | |
PTC Kepware KEPServerEX | =6.0 | |
PTC Kepware KEPServerEX | =6.9 | |
PTC OPC-Aggregator | ||
PTC ThingWorx Industrial Connectivity | ||
PTC ThingWorx Kepware Server | =6.8 | |
PTC ThingWorx Kepware Server | =6.9 | |
Rockwellautomation Kepserver Enterprise | =6.6.504.0 | |
Rockwellautomation Kepserver Enterprise | =6.9.572.0 | |
Softwaretoolbox Top Server | >=6.0<=6.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-27265 is a vulnerability affecting multiple software products including KEPServerEX, ThingWorx Kepware Server, ThingWorx Industrial Connectivity, OPC-Aggregator, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway Server, and Software Toolbox TOP Server.
CVE-2020-27265 has a severity value of 9.8, which indicates it is a critical vulnerability.
CVE-2020-27265 affects KEPServerEX versions 6.0 to 6.9, ThingWorx Kepware Server versions 6.8 and 6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggregator (all versions), Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway Server versions 7.68.804 and 7.66, and Software Toolbox TOP Server versions 6.0 to 6.9.
CVE-2020-27265 is associated with CWE IDs 119, 787, and 121.
You can find more information about CVE-2020-27265 at the following reference: [https://us-cert.cisa.gov/ics/advisories/icsa-20-352-02]