CVE-2023-29152: PTC Vuforia Studio
High severity, CVSS 8.1. EPSS: 0.4% chance of exploitation in the next 30 days.
By changing the filename parameter in the request, an attacker could delete any file with the permissions of the Vuforia server account.
Affected products
- PTC Vuforia Studio: before 9.9 (fixed in 9.9)
Published 2023-06-07. Last modified 2026-06-17.