ICSA-23-243-03: Ptc kepserverex vulnerability
Affected Software
3 affected components
: PTC Kepware KepServerEX: version 6.14.263.0 and prior
: PTC ThingWorx Kepware Server: version 6.14.263.0 and prior
: PTC ThingWorx Industrial Connectivity: version 8.0 to 8.5
Event History
Mar 25, 2025
Advisory Published
11:01 AM
Frequently Asked Questions
1
What is the severity of ICSA-23-243-03?
The severity of ICSA-23-243-03 is rated as high due to the potential for remote code execution.
2
How do I fix ICSA-23-243-03?
To fix ICSA-23-243-03, update PTC Kepware KepServerEX, PTC ThingWorx Kepware Server, or PTC ThingWorx Industrial Connectivity to the latest versions that are not vulnerable.
3
What products are affected by ICSA-23-243-03?
ICSA-23-243-03 affects PTC Kepware KepServerEX up to version 6.14.263.0 and prior, PTC ThingWorx Kepware Server up to version 6.14.263.0 and prior, and PTC ThingWorx Industrial Connectivity versions 8.0 to 8.5.
4
What types of attacks are possible due to ICSA-23-243-03?
ICSA-23-243-03 may allow attackers to execute arbitrary code on affected systems remotely.
5
Is there a workaround for ICSA-23-243-03?
There are currently no recommended workarounds for ICSA-23-243-03; updating the software is the best solution.