CVE-2013-2810
Summary
| CVE | CVE-2013-2810 |
|---|---|
| State | PUBLISHED |
| Assigner | icscert |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2014-12-08 11:59:00 UTC |
| Updated | 2026-05-06 22:30:45 UTC |
| Description | Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary commands via a TCP replay attack. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Emerson | Dl 8000 Remote Terminal Unit | - | All | All | All |
| Operating System | Emerson | Dl 8000 Remote Terminal Unit Firmware | 2.30 | All | All | All |
| Hardware | Emerson | Roc 800l Remote Terminal Unit | - | All | All | All |
| Operating System | Emerson | Roc 800l Remote Terminal Unit Firmware | All | All | All | All |
| Hardware | Emerson | Roc 800 Remote Terminal Unit | - | All | All | All |
| Operating System | Emerson | Roc 800 Remote Terminal Unit Firmware | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Multiple Emerson Process Management RTUs CVE-2013-2810 Security Bypass Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| Emerson ROC800 Multiple Vulnerabilities (Update B) | ICS-CERT | af854a3a-2127-422b-91ae-364da2661108 | ics-cert.us-cert.gov | Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 590584 Emerson ROC800 (Update B) Multiple Vulnerabilities (ICSA-13-259-01B)