ICSA-23-054-01: Ptc thingworx edge c-sdk vulnerability
Affected Software
9 affected components
PTC ThingWorx Edge C-SDK: v2.2.12.1052 or lower
PTC .NET-SDK: v5.8.4.971 or lower
PTC ThingWorx Edge MicroServer (EMS): v5.4.10.0 or lower
PTC Kepware KEPServerEX: v6.12 or lower
PTC ThingWorx Kepware Server (formerly ThingWorx Industrial Connectivity): v6.12 or lower
PTC ThingWorx Industrial Connectivity
PTC ThingWorx Kepware Edge: v1.5 or lower
PTC Rockwell Automation KEPServer Enterprise: v6.12 or lower
PTC GE Digital Industrial Gateway Server: v7.612 or lower
Event History
Mar 25, 2025
Advisory Published
11:01 AM
Frequently Asked Questions
1
What is the severity of ICSA-23-054-01?
ICSA-23-054-01 has been rated as a high severity vulnerability due to potential exploitation risks.
2
How do I fix ICSA-23-054-01?
To fix ICSA-23-054-01, update to the latest versions of the affected PTC software products listed in the advisory.
3
What systems are affected by ICSA-23-054-01?
ICSA-23-054-01 affects various PTC software products including ThingWorx Edge C-SDK, .NET-SDK, and KEPServerEX.
4
What types of attacks can exploit the ICSA-23-054-01 vulnerability?
The ICSA-23-054-01 vulnerability can potentially be exploited through unauthorized access or denial of service attacks.
5
Is a workaround available for ICSA-23-054-01?
There are currently no known workarounds for ICSA-23-054-01, so patching is the recommended solution.