CVE-2018-14793

HIGH

Emerson DeltaV - Buffer Overflow via Open Communication Port

Title source: llm
STIX 2.1

Description

DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable to a buffer overflow exploit through an open communication port to allow arbitrary code execution.

References (2)

Core 2
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-18-228-01
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/105105

Scores

CVSS v3 8.8
EPSS 0.0103
EPSS Percentile 59.3%
Attack Vector ADJACENT_NETWORK
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-119 CWE-121
Status published
Products (5)
emerson/deltav 11.3.1
emerson/deltav 12.3.1
emerson/deltav 13.3.0
emerson/deltav 13.3.1
emerson/deltav r5
Published Aug 21, 2018
Tracked Since Feb 18, 2026