← Back

CVE-2021-44463

nvd nist
Published: Jan 28, 2022Modified: Jun 17, 2026

JSON object

Loading...
7.3
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.3 / Impact: 5.9
Source: NVD

Description

Missing DLLs, if replaced by an insider, could allow an attacker to achieve local privilege escalation on the DeltaV Distributed Control System Controllers and Workstations (All versions) when some DeltaV services are started.

Affected (5)

Products: Emerson: Deltav
1 product
Deltav
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Emerson
Version 13.3.1
Version 14.3.1
Version 14 feature_pack1
Version 14 feature_pack2
Version r6

References (2)

Source: ics-cert@hq.dhs.gov
MitigationThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationThird Party AdvisoryUS Government Resource

Timeline

No history available yet.