CVE-2018-14795: Path Traversal
Published Aug 21, 2018
·Updated
DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable due to improper path validation which may allow an attacker to replace executable files.
Affected Software
5 affected components
Emerson DeltaV=11.3.1
Emerson DeltaV=12.3.1
Emerson DeltaV=13.3.0
Emerson DeltaV=13.3.1
Emerson DeltaV=r5
Event History
Aug 21, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2018-14795.
2
What is the severity of CVE-2018-14795?
The severity of CVE-2018-14795 is high with a CVSS score of 8.8.
3
Which versions of DeltaV are affected by CVE-2018-14795?
DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 are affected by CVE-2018-14795.
4
What is the description of CVE-2018-14795?
DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 are vulnerable due to improper path validation which may allow an attacker to replace executable files.
5
How can I fix CVE-2018-14795?
Apply the latest security patches and updates provided by Emerson to fix CVE-2018-14795.