CVE-2023-0754: Integer Overflow
The affected products are vulnerable to an integer overflow or wraparound, which could allow an attacker to crash the server and remotely execute arbitrary code.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-0754?
CVE-2023-0754 is a vulnerability that affects Ge Digital Industrial Gateway Server, Ptc Kepware Server, Ptc Kepware Serverex, Ptc Thingworx .net-sdk, Ptc Thingworx Edge C-sdk, Ptc Thingworx Edge Microserver, Ptc Thingworx Industrial Connectivity, Ptc Thingworx Kepware Edge, and Rockwellautomation Kepserver Enterprise products.
How severe is CVE-2023-0754?
CVE-2023-0754 has a severity score of 9.8, which is considered critical.
What is the vulnerability description of CVE-2023-0754?
CVE-2023-0754 is a vulnerability that allows an attacker to crash the server and remotely execute arbitrary code due to an integer overflow or wraparound.
Which software products are affected by CVE-2023-0754?
CVE-2023-0754 affects Ge Digital Industrial Gateway Server, Ptc Kepware Server, Ptc Kepware Serverex, Ptc Thingworx .net-sdk, Ptc Thingworx Edge C-sdk, Ptc Thingworx Edge Microserver, Ptc Thingworx Industrial Connectivity, Ptc Thingworx Kepware Edge, and Rockwellautomation Kepserver Enterprise products.
How can an attacker exploit CVE-2023-0754?
An attacker can exploit CVE-2023-0754 by taking advantage of the integer overflow or wraparound vulnerability to crash the server and execute arbitrary code remotely.