Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
PTC Creo Elements/Direct License Server Missing Authorization
Vulnerability Description
PTC Creo Elements/Direct License Server exposes a web interface which can be used by unauthenticated remote attackers to execute arbitrary OS commands on the server.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
授权机制缺失
Vulnerability Title
Creo Elements/Direct 安全漏洞
Vulnerability Description
Creo Elements/Direct是PTC的是PTC应用软件的一套全面的系统,供机械工程师和设计师使用 3D CAD 的直接建模方法来创建产品。 Creo Elements/Direct 20.7.0.0及之前版本存在安全漏洞,该漏洞源于公开了 Web 界面,未经身份验证的远程攻击者可利用该界面在服务器上执行任意操作系统命令。
CVSS Information
N/A
Vulnerability Type
N/A