AID
Automation
Information Directory
HomeCVE FeedBrands
AID
Automation Information Directory
CVE data sourced from NIST NVD · Documentation links from official sources
Home›Brands›Emerson Electric
EM
Platform

Emerson Electric

DeltaV DCS, Ovation process control, Fisher instrumentation, and AMS Device Manager for process automation.

https://www.emerson.com/en-us/automation →
6
Total CVEs
0
Resources
0
CRIT
0
HIGH
5
MED
1
LOW
CVEsCVEsSpecsTech SpecsDocsTech DocsImplImplementationsExamplesExamples
1 / 6
CVE-2022-2788LOW

Emerson Electric's Proficy Machine Edition Version 9.80 and prior is vulnerable to CWE-29 Path Traversal: '\..\Filename', also known as a ZipSlip attack, through an upload procedure which enables attackers to implant a malicious .BLZ file on the PLC. The file can transfer through the engineering station onto Windows in a way that executes the malicious code.

Aug 19, 2022
3.9
CVE ID ⇅Severity ↓CVSS ⇅DescriptionPublished ⇅
CVE-2022-2788LOW
3.9
Emerson Electric's Proficy Machine Edition Version 9.80 and prior is vulnerable to CWE-29 Path Trave…Aug 19, 2022›