Known Vulnerabilities for Deltav by Emerson
Listed below are 10 of the newest known vulnerabilities associated with "Deltav" by "Emerson".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-19021 | A specially crafted script could bypass the authentication of a maintenance port of Emerson DeltaV DCS Versions 11.3.1, 11.3.... | 6.5 - MEDIUM | 2019-01-25 | 2022-07-12 |
| CVE-2018-14797 | Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 allow a specially crafted DLL file to be placed in the search ... | 7.8 - HIGH | 2018-08-23 | 2022-07-12 |
| CVE-2018-14795 | DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable due to improper path validation which may allow an attac... | 8.8 - HIGH | 2018-08-21 | 2019-10-09 |
| CVE-2018-14793 | DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable to a buffer overflow exploit through an open communicati... | 8.8 - HIGH | 2018-08-21 | 2019-10-09 |
| CVE-2018-14791 | Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 may allow non-administrative users to change executable and li... | 7.8 - HIGH | 2018-08-23 | 2022-07-12 |
| CVE-2016-9345 | An issue was discovered in Emerson DeltaV Easy Security Management DeltaV V12.3, DeltaV V12.3.1, and DeltaV V13.3. Critical v... | 6.8 - MEDIUM | 2017-02-13 | 2018-11-01 |
| CVE-2014-2350 | Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 uses hardcoded credentials for diagnostic services, which allows remote attacke... | 7.5 - HIGH | 2014-05-22 | 2014-05-23 |
| CVE-2014-2349 | Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 allows local users to modify or read configuration files by leveraging engineer... | 4.6 - MEDIUM | 2014-05-22 | 2014-05-23 |
| CVE-2012-1815 | SQL injection vulnerability in Emerson DeltaV and DeltaV Workstations 9.3.1, 10.3.1, 11.3, and 11.3.1 and DeltaV ProEssential... | 7.5 - HIGH | 2012-06-08 | 2012-10-30 |
| CVE-2012-1814 | Cross-site scripting (XSS) vulnerability in Emerson DeltaV and DeltaV Workstations 9.3.1, 10.3.1, 11.3, and 11.3.1 and DeltaV... | 4.3 - MEDIUM | 2012-06-08 | 2012-10-30 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Emerson | Deltav | r5 | All | All | All |
| Application | Emerson | Deltav | 9.3.1 | All | All | All |
| Application | Emerson | Deltav | 13.3.1 | All | All | All |
| Application | Emerson | Deltav | 13.3.0 | All | All | All |
| Application | Emerson | Deltav | 12.3 | All | All | All |
| Application | Emerson | Deltav | 11.3.1 | All | All | All |
| Application | Emerson | Deltav | 11.3 | All | All | All |
| Application | Emerson | Deltav | 10.3.1 | All | All | All |