ICSA-23-054-01: Ptc thingworx edge c-sdk vulnerability

Affected Software

9 affected components
PTC ThingWorx Edge C-SDK: v2.2.12.1052 or lower
PTC .NET-SDK: v5.8.4.971 or lower
PTC ThingWorx Edge MicroServer (EMS): v5.4.10.0 or lower
PTC Kepware KEPServerEX: v6.12 or lower
PTC ThingWorx Kepware Server (formerly ThingWorx Industrial Connectivity): v6.12 or lower
PTC ThingWorx Industrial Connectivity
PTC ThingWorx Kepware Edge: v1.5 or lower
PTC Rockwell Automation KEPServer Enterprise: v6.12 or lower
PTC GE Digital Industrial Gateway Server: v7.612 or lower

Event History

Mar 25, 2025
Advisory Published
11:01 AM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of ICSA-23-054-01?

ICSA-23-054-01 has been rated as a high severity vulnerability due to potential exploitation risks.

2

How do I fix ICSA-23-054-01?

To fix ICSA-23-054-01, update to the latest versions of the affected PTC software products listed in the advisory.

3

What systems are affected by ICSA-23-054-01?

ICSA-23-054-01 affects various PTC software products including ThingWorx Edge C-SDK, .NET-SDK, and KEPServerEX.

4

What types of attacks can exploit the ICSA-23-054-01 vulnerability?

The ICSA-23-054-01 vulnerability can potentially be exploited through unauthorized access or denial of service attacks.

5

Is a workaround available for ICSA-23-054-01?

There are currently no known workarounds for ICSA-23-054-01, so patching is the recommended solution.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203