Vulnerability CVE-2024-6071


Published: 2024-06-27   Modified: 2024-06-28

Description:
PTC Creo Elements/Direct License Server exposes a web interface which can be used by unauthenticated remote attackers to execute arbitrary OS commands on the server.

Type:

CWE-862

(Missing Authorization)

 References:
https://www.cisa.gov/news-events/ics-advisories/icsa-24-177-02
https://www.ptc.com/en/support/article/CS417607

Copyright 2024, cxsecurity.com

 

Back to Top