Vulnerabilities
Vulnerable Software
Emerson:  >> Deltav  >> 13.3.1  Security Vulnerabilities
Missing DLLs, if replaced by an insider, could allow an attacker to achieve local privilege escalation on the DeltaV Distributed Control System Controllers and Workstations (All versions) when some DeltaV services are started.
CVSS Score
8.1
EPSS Score
0.0
Published
2022-01-28
A specially crafted script could bypass the authentication of a maintenance port of Emerson DeltaV DCS Versions 11.3.1, 11.3.2, 12.3.1, 13.3.1, 14.3, R5.1, R6 and prior, which may allow an attacker to cause a denial of service.
CVSS Score
6.5
EPSS Score
0.005
Published
2019-01-25
Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 allow a specially crafted DLL file to be placed in the search path and loaded as an internal and valid DLL, which may allow arbitrary code execution.
CVSS Score
7.8
EPSS Score
0.002
Published
2018-08-23
Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 may allow non-administrative users to change executable and library files on the affected products.
CVSS Score
7.8
EPSS Score
0.001
Published
2018-08-23
DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable due to improper path validation which may allow an attacker to replace executable files.
CVSS Score
8.8
EPSS Score
0.018
Published
2018-08-21
DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable to a buffer overflow exploit through an open communication port to allow arbitrary code execution.
CVSS Score
8.8
EPSS Score
0.003
Published
2018-08-21


Contact Us

Shodan ® - All rights reserved