CVE-2023-29445
Uncontrolled Search Path Element in PTC's Kepware KEPServerEX
Severity Score
7.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
An uncontrolled search path element vulnerability (DLL hijacking) has been discovered that could allow a locally authenticated adversary to escalate privileges to SYSTEM.
Se ha descubierto una vulnerabilidad de elemento de ruta de búsqueda no controlada (secuestro de DLL) que podría permitir a un adversario autenticado localmente escalar privilegios a SYSTEM.
*Credits:
Sam Hanson of Dragos
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2023-04-06 CVE Reserved
- 2024-01-10 CVE Published
- 2024-08-02 CVE Updated
- 2025-04-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-427: Uncontrolled Search Path Element
CAPEC
- CAPEC-233: Privilege Escalation
References (3)
URL | Tag | Source |
---|---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-23-243-03 | Government Resource | |
https://www.dragos.com/advisory/ptcs-kepserverex-vulnerabilities | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.ptc.com/en/support/article/cs399528 | 2024-01-19 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ptc Search vendor "Ptc" | Kepware Kepserverex Search vendor "Ptc" for product "Kepware Kepserverex" | >= 6.0.2107.0 <= 6.14.263.0 Search vendor "Ptc" for product "Kepware Kepserverex" and version " >= 6.0.2107.0 <= 6.14.263.0" | - |
Affected
| ||||||
Ptc Search vendor "Ptc" | Thingworx Kepware Server Search vendor "Ptc" for product "Thingworx Kepware Server" | >= 6.8 <= 6.14.263.0 Search vendor "Ptc" for product "Thingworx Kepware Server" and version " >= 6.8 <= 6.14.263.0" | - |
Affected
| ||||||
Ptc Search vendor "Ptc" | Thingworx Industrial Connectivity Search vendor "Ptc" for product "Thingworx Industrial Connectivity" | >= 8.0 <= 8.5 Search vendor "Ptc" for product "Thingworx Industrial Connectivity" and version " >= 8.0 <= 8.5" | - |
Affected
|