Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Emerson DeltaV Distributed Control System (DCS) through 2022-04-29 mishandles authentication. It utilizes several proprietary protocols for a wide variety of functionality. These protocols include Firmware upgrade (18508/TCP, 18518/TCP); Plug-and-Play (18510/UDP); Hawk services (18507/UDP); Management (18519/TCP); Cold restart (18512/UDP); SIS communications (12345/TCP); and Wireless Gateway Protocol (18515/UDP). None of these protocols have any authentication features, allowing any attacker capable of communicating with the ports in question to invoke (a subset of) desired functionality.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Emerson DeltaV Distributed Control System 访问控制错误漏洞
Vulnerability Description
Emerson DeltaV Distributed Control System是美国艾默生电气(Emerson)公司的一套自动化分布式控制系统。该系统包括网络安全管理、报警管理、批量控制和变更管理等功能。 Emerson DeltaV Distributed Control System 存在访问控制错误漏洞,该漏洞源于固件升级、即插即用、Hawk 服务、管理、SIS 通信和组播在内的几个协议没有认证。
CVSS Information
N/A
Vulnerability Type
N/A