« Volver al listado

CVE-2012-4703

Estado: ModificadaMedia (6.1)—

The Emerson DeltaV SE3006 through 11.3.1, DeltaV VE3005 through 10.3.1 and 11.x through 11.3.1, and DeltaV VE3006 through 10.3.1 and 11.x through 11.3.1 allow remote attackers to cause a denial of service (device restart) via a crafted packet on (1) TCP port 23, (2) UDP port 161, or (3) TCP port 513.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (3)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2012-4703",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 6.1,
          "accessVector": "ADJACENT_NETWORK",
          "vectorString": "AV:A/AC:L/Au:N/C:N/I:N/A:C",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 6.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 6.5,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "ics-cert@hq.dhs.gov",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2013-03-11T21:55:02.417",
  "references": [
    {
      "url": "http://ics-cert.us-cert.gov/pdf/ICSA-13-053-01.pdf",
      "source": "ics-cert@hq.dhs.gov"
    },
    {
      "url": "http://ics-cert.us-cert.gov/pdf/ICSA-13-053-01.pdf",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-399"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The Emerson DeltaV SE3006 through 11.3.1, DeltaV VE3005 through 10.3.1 and 11.x through 11.3.1, and DeltaV VE3006 through 10.3.1 and 11.x through 11.3.1 allow remote attackers to cause a denial of service (device restart) via a crafted packet on (1) TCP port 23, (2) UDP port 161, or (3) TCP port 513."
    },
    {
      "lang": "es",
      "value": "El  Emerson DeltaV SE3006 hasta la v11.3.1, DeltaV VE3005 hasta la v10.3.1 y v11.x hasta la v11.3.1, y DeltaV VE3006 hasta la v10.3.1 y 11.x hasta la v11.3.1, permite a atacantes remotos provocar una denegación de servicio (reinicio de dispositivo) a través de un paquete manipulado en los puertos (1)TCP 23, (2)UDP 161 o (3)TCP 513."
    }
  ],
  "lastModified": "2026-06-16T23:45:36.327",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:emerson:deltav_se3006_sd_plus_controller:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E06BB514-8F04-4511-A47F-47B58D059ABB",
              "versionEndIncluding": "11.3.1"
            },
            {
              "criteria": "cpe:2.3:a:emerson:deltav_ve3005_controller_md:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B7109D05-0252-429A-8A4A-9E25C8E4099B",
              "versionEndIncluding": "10.3.1"
            },
            {
              "criteria": "cpe:2.3:a:emerson:deltav_ve3005_controller_md:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5177AB6A-767C-438B-BCF2-4FC084BB95A8",
              "versionEndIncluding": "11.3.1"
            },
            {
              "criteria": "cpe:2.3:a:emerson:deltav_ve3006_controller_md_plus:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8FE5EF9F-83F7-46C1-A31B-7B1073FA03F7",
              "versionEndIncluding": "10.3.1"
            },
            {
              "criteria": "cpe:2.3:a:emerson:deltav_ve3006_controller_md_plus:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "EC578FD4-367B-4510-AC85-CC8A4AED04B0",
              "versionEndIncluding": "11.3.1"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "ics-cert@hq.dhs.gov"
}