QID 591249

Date Published: 2022-12-23

QID 591249: Emerson DeltaV Distributed Control System Multiple Vulnerabilities (ICSA-22-181-03)

AFFECTED PRODUCTS
DeltaV M-series: All versions.
DeltaV S-series: All versions.
DeltaV P-series: All versions.
DeltaV SIS: All versions.
DeltaV CIOC/EIOC/WIOC IO cards: All versions.

QID Detection Logic:
This QID checks for the Vulnerable version of Emerson DeltaV Distributed Control System using passive scanning

Successful exploitation of these vulnerabilities can result in a denial-of-service condition, manipulation of runtime communications, or compromise of a controller.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Critical - 8.3 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ICSA-22-181-03 for affected packages and patching details.

    Vendor References
    Software Advisories
    Advisory ID Software Component Link