CVE-2013-2810

Emerson ROC800 RTU < 3.50, DL8000 RTU < 2.30, ROC800L RTU < 1.20 - Remote Code Execution via TCP Replay Attack

Title source: llm
STIX 2.1

Description

Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary commands via a TCP replay attack.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/71425
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-13-259-01A
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/99131

Scores

EPSS 0.0598
EPSS Percentile 92.4%

Details

CWE
CWE-77
Status published
Products (6)
emerson/dl_8000_remote_terminal_unit
emerson/dl_8000_remote_terminal_unit_firmware 2.30
emerson/roc_800_remote_terminal_unit
emerson/roc_800_remote_terminal_unit_firmware < 3.50
emerson/roc_800l_remote_terminal_unit
emerson/roc_800l_remote_terminal_unit_firmware < 1.20
Published Dec 08, 2014
Tracked Since Feb 18, 2026