CVE-2018-19021: Medium severity emerson deltav vulnerability
Published Jan 25, 2019
·Updated
A specially crafted script could bypass the authentication of a maintenance port of Emerson DeltaV DCS Versions 11.3.1, 11.3.2, 12.3.1, 13.3.1, 14.3, R5.1, R6 and prior, which may allow an attacker to cause a denial of service.
Affected Software
6 affected components
Emerson DeltaV>=r5.1<=r6
Emerson DeltaV=11.3.1
Emerson DeltaV=11.3.2
Emerson DeltaV=12.3.1
Emerson DeltaV=13.3.1
Emerson DeltaV=14.3
Event History
Jan 25, 2019
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2018-19021.
2
What is the severity of CVE-2018-19021?
The severity of CVE-2018-19021 is medium with a severity value of 6.5.
3
What is affected by CVE-2018-19021?
Emerson DeltaV DCS Versions 11.3.1, 11.3.2, 12.3.1, 13.3.1, 14.3, R5.1, R6 and prior are affected by CVE-2018-19021.
4
How can an attacker exploit CVE-2018-19021?
An attacker can exploit CVE-2018-19021 by using a specially crafted script to bypass the authentication of the maintenance port.
5
Are there any references for CVE-2018-19021?
Yes, you can find references for CVE-2018-19021 at the following links: http://www.securityfocus.com/bid/106522, https://ics-cert.us-cert.gov/advisories/ICSA-19-010-01.