First published: Mon Feb 13 2017(Updated: )
An issue was discovered in Emerson DeltaV Easy Security Management DeltaV V12.3, DeltaV V12.3.1, and DeltaV V13.3. Critical vulnerabilities may allow a local attacker to elevate privileges within the DeltaV control system.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Emerson DeltaV | =12.3 | |
Emerson DeltaV | =12.3.1 | |
Emerson DeltaV | =13.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-9345 is classified as a critical vulnerability due to the potential for privilege escalation.
To mitigate CVE-2016-9345, update to the latest version of Emerson DeltaV that addresses this vulnerability.
Versions 12.3, 12.3.1, and 13.3 of Emerson DeltaV are affected by CVE-2016-9345.
CVE-2016-9345 can be exploited by local attackers with access to the DeltaV control system.
CVE-2016-9345 poses serious risks to system integrity by allowing attackers to elevate privileges.