Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 uses hardcoded credentials for diagnostic services, which allows remote attackers to bypass intended access restrictions via a TCP session, as demonstrated by a session that uses the telnet program.
                
            Metrics
Affected Vendors & Products
References
        History
                    Fri, 31 Oct 2025 23:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Title | Emerson DeltaV Use of Hard-coded Credentials | |
| Weaknesses | CWE-798 | |
| References | 
         | |
| Metrics | 
        
        
        cvssV2_0
         
  | 
    
        
        
        cvssV2_0
         
  | 
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-10-31T22:55:07.498Z
Reserved: 2014-03-13T00:00:00
Link: CVE-2014-2350
No data.
Status : Deferred
Published: 2014-05-22T20:55:06.440
Modified: 2025-10-31T23:15:32.127
Link: CVE-2014-2350
No data.