CVE-2018-19021: Emerson Deltav

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

A specially crafted script could bypass the authentication of a maintenance port of Emerson DeltaV DCS Versions 11.3.1, 11.3.2, 12.3.1, 13.3.1, 14.3, R5.1, R6 and prior, which may allow an attacker to cause a denial of service.

Affected products

  • Emerson Deltav: from r5.1, up to and including r6; version 11.3.1 only; version 11.3.2 only; version 12.3.1 only; version 13.3.1 only; version 14.3 only

Published 2019-01-25. Last modified 2026-06-17.