CVE-2014-2349

EUVD-2014-2386
Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 uses hardcoded credentials for diagnostic services, which allows remote attackers to bypass intended access restrictions via a TCP session, as demonstrated by a session that uses the telnet program.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.2 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:S/C:N/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 28%
Affected Products (NVD)
VendorProductVersion
emersondeltav
10.3.1
emersondeltav
11.3
emersondeltav
11.3.1
emersondeltav
12.3
𝑥
= Vulnerable software versions