ICSA-24-228-11: Ptc thingworx kepware server vulnerability
Affected Software
4 affected components
: PTC PTC Kepware ThingWorx Kepware Server: V6
: PTC PTC Kepware KEPServerEX: V6
: PTC Software Toolbox TOP Server: V6
: PTC GE IGS: V7.6x
Event History
Mar 25, 2025
Advisory Published
11:01 AM
Frequently Asked Questions
1
What is the severity of ICSA-24-228-11?
The severity of ICSA-24-228-11 is classified as high due to the potential for remote code execution.
2
How do I fix ICSA-24-228-11?
To fix ICSA-24-228-11, users should update their PTC software products to the latest version as recommended in the advisory.
3
Which PTC software products are affected by ICSA-24-228-11?
ICSA-24-228-11 affects PTC Kepware ThingWorx Kepware Server, PTC KEPServerEX, PTC Software Toolbox TOP Server, and GE IGS.
4
What types of vulnerabilities does ICSA-24-228-11 address?
ICSA-24-228-11 addresses vulnerabilities that could allow an attacker to gain unauthorized access and execute arbitrary code.
5
Is there a workaround for ICSA-24-228-11?
While updating software is the best approach, specific temporary workarounds may involve restricting network access to vulnerable systems.