Vulnerabilities in Emerson

31 results
CVE-2019-10967In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a stack-based buffer overflow vulnerability in the embedded third-party FTP server iEPSS 3.8%CVE-2019-10965In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a heap-based buffer overflow vulnerability in the embedded third-party FTP server inEPSS 3.7%CVE-2018-14804Emerson AMS Device Manager v12.0 to v13.5. A specially crafted script may be run that allows arbitrary remote code execution.EPSS 3.5%CVE-2020-10640CRITICALICSA-20-140-02 Emerson OpenEnterpriseEPSS 2.9%CVE-2020-6970A Heap-based Buffer Overflow was found in Emerson OpenEnterprise SCADA Server 2.83 (if Modbus or ROC Interfaces have been installed and are EPSS 2.5%CVE-2018-14797Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 allow a specially crafted DLL file to be placed in the search path and loadedEPSS 1.7%CVE-2021-42542HIGHEmerson WirelessHART GatewayEPSS 1.4%CVE-2014-2350Emerson DeltaV Use of Hard-coded CredentialsEPSS 1.3%CVE-2020-12030CRITICALEmerson WirelessHART GatewayEPSS 1.1%CVE-2021-42540HIGHEmerson WirelessHART GatewayEPSS 1.0%CVE-2023-46687CRITICALEmerson Rosemount GC370XA, GC700XA, GC1500XA Command InjectionEPSS 0.9%CVE-2021-42538HIGHEmerson WirelessHART GatewayEPSS 0.9%CVE-2018-14808Emerson AMS Device Manager v12.0 to v13.5. Non-administrative users are able to change executable and library files on the affected productEPSS 0.9%CVE-2021-42536HIGHEmerson WirelessHART GatewayEPSS 0.9%CVE-2021-38485HIGHEmerson WirelessHART GatewayEPSS 0.9%CVE-2021-42539HIGHEmerson WirelessHART GatewayEPSS 0.7%CVE-2018-19021A specially crafted script could bypass the authentication of a maintenance port of Emerson DeltaV DCS Versions 11.3.1, 11.3.2, 12.3.1, 13.3EPSS 0.7%CVE-2023-51761HIGHEmerson Rosemount GC370XA, GC700XA, GC1500XA Improper AuthenticationEPSS 0.7%CVE-2014-2349Emerson DeltaV Use of Improper AuthorizationEPSS 0.7%CVE-2023-49716MEDIUMEmerson Rosemount GC370XA, GC700XA, GC1500XA Command InjectionEPSS 0.6%