Vulnerability index

Browse CVEs

37 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Gc370xa Firmware CRITICAL 9.8
CVE-2023-49716

In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an authenticated user with network access could run arbitrary commands from a remote co…

Mitigation only
Fix from $2,300 2024-02-09
Gc370xa Firmware HIGH 8.1
CVE-2023-51761

In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an unauthenticated user with network access could bypass authentication and acquire adm…

Mitigation only
Fix from $1,950 2024-02-09
Gc370xa Firmware CRITICAL 9.8
CVE-2023-46687

In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an unauthenticated user with network access could execute arbitrary commands in root co…

Mitigation only
Fix from $2,300 2024-02-09
Gc370xa Firmware CRITICAL 9.1
CVE-2023-43609

In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an unauthenticated user with network access could obtain access to sensitive informatio…

Mitigation only
Fix from $2,300 2024-02-09
Roc809 Firmware CRITICAL 9.4
CVE-2023-1935

ROC800-Series RTU devices are vulnerable to an authentication bypass, which could allow an attacker to gain unauthorized access to data or control of…

Mitigation only
Fix from $2,300 2023-08-02
Dixell Xweb 500 Firmware CRITICAL 9.8
CVE-2021-45420EPSS 18%

Emerson Dixell XWEB-500 products are affected by arbitrary file write vulnerability in /cgi-bin/logo_extra_upload.cgi, /cgi-bin/cal_save.cgi, and /cg…

Mitigation only
Fix from $2,300 2022-02-14
Dixell Xweb 500 Firmware HIGH 7.5
CVE-2021-45421

Emerson Dixell XWEB-500 products are affected by information disclosure via directory listing. A potential attacker can use this misconfiguration to …

No fix yet
Fix from $1,950 2022-02-14
Deltav HIGH 7.3
CVE-2021-44463

Missing DLLs, if replaced by an insider, could allow an attacker to achieve local privilege escalation on the DeltaV Distributed Control System Contr…

Mitigation only
Fix from $1,950 2022-01-28
Deltav Workstation MEDIUM 5.5
CVE-2021-26264

A specially crafted script could cause the DeltaV Distributed Control System Controllers (All Versions) to restart and cause a denial-of-service cond…

No fix yet
Fix from $1,600 2022-01-28
Xweb300d Evo Firmware CRITICAL 9.8
CVE-2021-45427EPSS 19%

Emerson XWEB 300D EVO 3.0.7--3ee403 is affected by: unauthenticated arbitrary file deletion due to path traversal. An attacker can browse and delete …

No fix yet
Fix from $2,300 2021-12-30
Proficy Machine Edition MEDIUM 5.3
CVE-2021-29297

Buffer Overflow in Emerson GE Automation Proficy Machine Edition v8.0 allows an attacker to cause a denial of service and application crash via craft…

Mitigation only
Fix from $1,600 2021-07-30
Proficy Machine Edition MEDIUM 5.3
CVE-2021-29298

Improper Input Validation in Emerson GE Automation Proficy Machine Edition v8.0 allows an attacker to cause a denial of service and application crash…

Mitigation only
Fix from $1,600 2021-07-30
X Stream Enhanced Xegp Firmware CRITICAL 9.8
CVE-2021-27459

A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The webserver of the affected products allows unvali…

Mitigation only
Fix from $2,300 2021-05-20
X Stream Enhanced Xegp Firmware HIGH 7.5
CVE-2021-27457

A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected products utilize a weak encryption algo…

Mitigation only
Fix from $1,950 2021-05-20
X Stream Enhanced Xegp Firmware HIGH 7.5
CVE-2021-27461

A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected webserver applications allow access to …

Mitigation only
Fix from $1,950 2021-05-20
X Stream Enhanced Xegp Firmware MEDIUM 6.1
CVE-2021-27465

A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications do not validate webpage in…

Mitigation only
Fix from $1,600 2021-05-20
X Stream Enhanced Xegp Firmware MEDIUM 6.1
CVE-2021-27467

A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected product’s web interface allows an attac…

Mitigation only
Fix from $1,600 2021-05-20
X Stream Enhanced Xegp Firmware MEDIUM 5.3
CVE-2021-27463

A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies…

Mitigation only
Fix from $1,600 2021-05-20
Wireless 1420 Gateway Firmware HIGH 8.8
CVE-2020-19417

Emerson Smart Wireless Gateway 1420 4.6.59 allows non-privileged users (such as the default account 'maint') to perform administrative tasks by sendi…

No fix yet
Fix from $1,950 2021-03-10
Smart Wireless Gateway 1420 Firmware HIGH 7.5
CVE-2020-19419

Incorrect Access Control in Emerson Smart Wireless Gateway 1420 4.6.59 allows remote attackers to obtain sensitive device information from the admini…

No fix yet
Fix from $1,950 2021-03-10
X Stream Enhanced Xegp Firmware HIGH 7.5
CVE-2020-27254

Emerson Rosemount X-STREAM Gas AnalyzerX-STREAM enhanced XEGP, XEGK, XEFD, XEXF – all revisions, The affected products are vulnerable to improper aut…

Mitigation only
Fix from $1,950 2020-12-21
Liebert Challenger Firmware MEDIUM 6.1
CVE-2019-12167

httpGetSet/httpGet.htm on Emerson Network Power Liebert Challenger 5.1E0.5 devices allows XSS via the statusstr parameter.

Mitigation only
Fix from $1,600 2019-05-22
Ve6046 Firmware CRITICAL 9.8
CVE-2018-11691

Emerson DeltaV Smart Switch Command Center application, available in versions 11.3.x and 12.3.1, was unable to change the DeltaV Smart Switches’ mana…

Mitigation only
Fix from $2,300 2019-05-14
Deltav MEDIUM 6.5
CVE-2018-19021

A specially crafted script could bypass the authentication of a maintenance port of Emerson DeltaV DCS Versions 11.3.1, 11.3.2, 12.3.1, 13.3.1, 14.3,…

Mitigation only
Fix from $1,600 2019-01-25
Deltav HIGH 7.8
CVE-2018-14797

Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 allow a specially crafted DLL file to be placed in the search path and loaded as an in…

Mitigation only
Fix from $1,950 2018-08-23
Deltav HIGH 7.8
CVE-2018-14791

Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 may allow non-administrative users to change executable and library files on the affec…

Mitigation only
Fix from $1,950 2018-08-23
Deltav HIGH 8.8
CVE-2018-14795

DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable due to improper path validation which may allow an attacker to replace executabl…

Mitigation only
Fix from $1,950 2018-08-21
Deltav HIGH 8.8
CVE-2018-14793

DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable to a buffer overflow exploit through an open communication port to allow arbitra…

Mitigation only
Fix from $1,950 2018-08-21
Deltav MEDIUM 6.8
CVE-2016-9345

An issue was discovered in Emerson DeltaV Easy Security Management DeltaV V12.3, DeltaV V12.3.1, and DeltaV V13.3. Critical vulnerabilities may allow…

Mitigation only
Fix from $1,600 2017-02-13
Se4801t0x Redundant Wireless I\/o Card Firmware MEDIUM 5.0
CVE-2016-9347

An issue was discovered in Emerson SE4801T0X Redundant Wireless I/O Card V13.3, and SE4801T1X Simplex Wireless I/O Card V13.3. DeltaV Wireless I/O Ca…

Mitigation only
Fix from $1,600 2017-02-13