« Volver al listado

CVE-2020-27263

Estado: ModificadaCrítica (9.1)—

KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway Server: v7.68.804 and v7.66, Software Toolbox TOP Server: All 6.x versions, are vulnerable to a heap-based buffer overflow. Opening a specifically crafted OPC UA message could allow an attacker to crash the server and potentially leak data.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (7)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2020-27263",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 6.4,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:P",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 4.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 9.1,
          "attackVector": "NETWORK",
          "baseSeverity": "CRITICAL",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.2,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "ics-cert@hq.dhs.gov",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "PTC Kepware KEPServerEX",
          "versions": [
            {
              "status": "affected",
              "version": "v6.0 to v6.9"
            }
          ]
        },
        {
          "vendor": "n/a",
          "product": "ThingWorx Kepware Server",
          "versions": [
            {
              "status": "affected",
              "version": "v6.8 and v6.9"
            }
          ]
        },
        {
          "vendor": "n/a",
          "product": "ThingWorx Industrial Connectivity",
          "versions": [
            {
              "status": "affected",
              "version": "All versions"
            }
          ]
        },
        {
          "vendor": "n/a",
          "product": "OPC-Aggregator",
          "versions": [
            {
              "status": "affected",
              "version": "All versions"
            }
          ]
        },
        {
          "vendor": "n/a",
          "product": "Rockwell Automation KEPServer Enterprise",
          "versions": [
            {
              "status": "affected",
              "version": "All versions"
            }
          ]
        },
        {
          "vendor": "n/a",
          "product": "GE Digital Industrial Gateway Server",
          "versions": [
            {
              "status": "affected",
              "version": "v7.68.804"
            },
            {
              "status": "affected",
              "version": "v7.66"
            }
          ]
        },
        {
          "vendor": "n/a",
          "product": "Software Toolbox TOP Server",
          "versions": [
            {
              "status": "affected",
              "version": "All 6.x versions"
            }
          ]
        }
      ]
    }
  ],
  "published": "2021-01-14T00:15:13.353",
  "references": [
    {
      "url": "https://us-cert.cisa.gov/ics/advisories/icsa-20-352-02",
      "tags": [
        "Third Party Advisory",
        "US Government Resource"
      ],
      "source": "ics-cert@hq.dhs.gov"
    },
    {
      "url": "https://us-cert.cisa.gov/ics/advisories/icsa-20-352-02",
      "tags": [
        "Third Party Advisory",
        "US Government Resource"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "ics-cert@hq.dhs.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-122"
        }
      ]
    },
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-787"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway Server: v7.68.804 and v7.66, Software Toolbox TOP Server: All 6.x versions, are vulnerable to a heap-based buffer overflow. Opening a specifically crafted OPC UA message could allow an attacker to crash the server and potentially leak data."
    },
    {
      "lang": "es",
      "value": "KEPServerEX: versiones v6.0 hasta v6.9, ThingWorx Kepware Server: versiones v6.8 y v6.9, ThingWorx Industrial Connectivity: Todas las versiones, OPC-Aggregator: Todas las versiones, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway Server: versiones v7.68.804 y v7.66, Software Toolbox TOP Server: Todas las versiones 6.x son vulnerables a un desbordamiento de búfer en la región heap de la memoria. Abrir un mensaje OPC UA específicamente diseñado podría permitir a un atacante bloquear el servidor y potencialmente filtrar datos"
    }
  ],
  "lastModified": "2026-06-17T03:09:04.717",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:ge:industrial_gateway_server:7.66:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E5AEAC75-5E69-4C49-8D57-35401400C9D2"
            },
            {
              "criteria": "cpe:2.3:a:ge:industrial_gateway_server:7.68.804:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "906B1D62-7656-457E-B528-B0407C9D0BA4"
            },
            {
              "criteria": "cpe:2.3:a:ptc:kepware_kepserverex:6.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6994DBB6-BA65-4E47-B0E4-42310120FC04"
            },
            {
              "criteria": "cpe:2.3:a:ptc:kepware_kepserverex:6.9:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FC1720A3-85F1-4A85-B226-1CCBB34FCAAC"
            },
            {
              "criteria": "cpe:2.3:a:ptc:opc-aggregator:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D8F46490-09F7-488A-B1EB-2286BFA0F882"
            },
            {
              "criteria": "cpe:2.3:a:ptc:thingworx_industrial_connectivity:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D01A814D-8F2B-4B88-A66B-F2A2C293A6AB"
            },
            {
              "criteria": "cpe:2.3:a:ptc:thingworx_kepware_server:6.8:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2DE510A4-1D91-447E-BF61-6CDFDFF82796"
            },
            {
              "criteria": "cpe:2.3:a:ptc:thingworx_kepware_server:6.9:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2F16FBD0-8841-4E42-8FE6-796F7B4E5C16"
            },
            {
              "criteria": "cpe:2.3:a:rockwellautomation:kepserver_enterprise:6.6.504.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6FFA2B21-E36C-41CE-B633-B831C6D42962"
            },
            {
              "criteria": "cpe:2.3:a:rockwellautomation:kepserver_enterprise:6.9.572.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BACC2F09-9EC8-420A-B499-BF7CD737A473"
            },
            {
              "criteria": "cpe:2.3:a:softwaretoolbox:top_server:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "95B527BB-A27F-4080-8BBB-3FCA2408B7AE",
              "versionEndIncluding": "6.9",
              "versionStartIncluding": "6.0"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "ics-cert@hq.dhs.gov"
}