CVE-2013-2810
Summary
| CVE | CVE-2013-2810 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2014-12-08 11:59:00 UTC |
| Updated | 2017-08-29 01:33:00 UTC |
| Description | Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary commands via a TCP replay attack. |
Risk And Classification
Problem Types: CWE-77
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Emerson | Dl 8000 Remote Terminal Unit | - | All | All | All |
| Hardware | Emerson | Dl 8000 Remote Terminal Unit | - | All | All | All |
| Operating System | Emerson | Dl 8000 Remote Terminal Unit Firmware | 2.30 | All | All | All |
| Operating System | Emerson | Dl 8000 Remote Terminal Unit Firmware | 2.30 | All | All | All |
| Hardware | Emerson | Roc 800l Remote Terminal Unit | - | All | All | All |
| Hardware | Emerson | Roc 800l Remote Terminal Unit | - | All | All | All |
| Operating System | Emerson | Roc 800l Remote Terminal Unit Firmware | All | All | All | All |
| Hardware | Emerson | Roc 800 Remote Terminal Unit | - | All | All | All |
| Hardware | Emerson | Roc 800 Remote Terminal Unit | - | All | All | All |
| Operating System | Emerson | Roc 800 Remote Terminal Unit Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Emerson ROC800 Multiple Vulnerabilities (Update B) | ICS-CERT | MISC | ics-cert.us-cert.gov | Third Party Advisory, US Government Resource |
| Multiple Emerson Process Management RTUs CVE-2013-2810 Security Bypass Vulnerability | BID | www.securityfocus.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 590584 Emerson ROC800 (Update B) Multiple Vulnerabilities (ICSA-13-259-01B)