CVE-2023-29447 Information
Jan 11, 2024
cve
Description
An insufficiently protected credentials vulnerability in KEPServerEX could allow an adversary to capture user credentials as the web server uses basic authentication.
Reference
https://www.cisa.gov/news-events/ics-advisories/icsa-23-243-03 https://www.ptc.com/en/support/article/cs399528 https://www.dragos.com/advisory/ptcs-kepserverex-vulnerabilities/
Share on: