CVE-2013-0694
Published Oct 3, 2013
Last updated 11 years ago
Overview
- Description
- The Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier have hardcoded credentials in a ROM, which makes it easier for remote attackers to obtain shell access to the underlying OS by leveraging knowledge of the ROM contents from a product installation elsewhere.
- Source
- ics-cert@hq.dhs.gov
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 9
- Impact score
- 10
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-255
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:enea:ose:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D25E1CE-72CF-4D4B-940F-720362EC5B19", "versionEndIncluding": "2.30" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:emerson:dl_8000_remote_terminal_unit:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E57C5C99-9480-4506-B8B4-A83485050B91" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:enea:ose:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "54CB70DF-F2C3-481A-852A-1A83909F0974", "versionEndIncluding": "1.20" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:emerson:roc_800l_remote_terminal_unit:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1935960D-E2BF-4348-AE45-29DDC1683C8D" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:enea:ose:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D91452FC-4D1C-470E-A886-E7BDA49A2DBE", "versionEndIncluding": "3.50" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:emerson:roc_800_remote_terminal_unit:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "80C553AD-326E-4135-BA54-35830CD6B13C" } ], "operator": "OR" } ], "operator": "AND" } ]