Known Vulnerabilities for products from Ptc

Listed below are 10 of the newest known vulnerabilities associated with the vendor "Ptc".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2020-27267 KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggre... 9.1 - CRITICAL 2021-01-14 2021-01-21
CVE-2020-27265 KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggr... 9.8 - CRITICAL 2021-01-14 2021-01-21
CVE-2020-27263 KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggr... 9.1 - CRITICAL 2021-01-14 2021-01-21
CVE-2018-20092 PTC ThingWorx Platform through 8.3.0 is vulnerable to a directory traversal attack on ZIP files via a POST request. 7.5 - HIGH 2018-12-17 2019-06-20
CVE-2018-17218 An issue was discovered in PTC ThingWorx Platform 6.5 through 8.2. There is reflected XSS in the SQUEAL search function. 5.4 - MEDIUM 2018-10-01 2019-09-26
CVE-2018-17217 An issue was discovered in PTC ThingWorx Platform 6.5 through 8.2. There is a hardcoded encryption key. 7.5 - HIGH 2018-10-01 2018-11-15
CVE-2018-17216 An issue was discovered in PTC ThingWorx Platform 6.5 through 8.2. There is password hash exposure to privileged users. 6.5 - MEDIUM 2018-10-01 2018-11-15
CVE-2015-2061 Heap-based buffer overflow in the browser plugin for PTC Creo View allows remote attackers to execute arbitrary code via vect... 7.5 - HIGH 2015-03-09 2016-11-30
CVE-2014-9267 Heap-based buffer overflow in the PTC IsoView ActiveX control allows remote attackers to execute arbitrary code via a crafted... 6.8 - MEDIUM 2014-12-08 2014-12-09
CVE-2007-4600 The "Protect Worksheet" functionality in Mathsoft Mathcad 12 through 13.1, and PTC Mathcad 14, implements file access restric... 4.6 - MEDIUM 2007-10-18 2018-10-15

Known software with vulnerabilities from Ptc

Type Vendor Product Version
ApplicationPtcCreo View-
ApplicationPtcIsoview-
ApplicationPtcThingworx Platform6.5.0