CISA has added an exploited Remote Code Execution (RCE) vulnerability in PTC Windchill to its Known Exploited Vulnerabilities (KEV) catalog. This flaw is being actively targeted in web shell attacks, prompting organizations to apply necessary patches and improve their cybersecurity measures. The urgency is underscored as web shell attacks can allow remote unauthorized access to systems, potentially leading to severe data breaches and operational disruptions.
CISA warns of active PTC Windchill RCE exploited via web shells
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
Cl0p ransomware exploits PTC Windchill flaw, hits Shell, Philips
securityaffairs.com
-
Cl0p Ransomware Group Names Over 40 Victims of PTC Windchill Campaign
securityweek.com
-
Cl0p Gang Hits PTC Windchill via CVE-2026-12569 Flaw
securityweek.com
-
Cl0p exploits PTC Windchill flaw for unauthenticated RCE
thehackernews.com
-
Clop ransomware hits Windchill via CVE-2026-12569 flaw
databreaches.net
-
CISA warns of active PTC Windchill RCE exploited via web shells
thehackernews.com