Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2013-0689 Details

Description

The TFTP server on the Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to upload files and consequently execute arbitrary code via unspecified vectors.

Metrics

CVSS 3.x Severity and Vector Strings:

No CVSS 3.x data is available for this CVE.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

Weakness Enumeration

CWE-IDCWE NameSource
CWE-94Improper Control of Generation of Code ('Code Injection')[email protected]

Affected Products

ProductVersions
enea ose
<= 1.20
<= 3.50
<= 2.30

CPE

  • cpe:2.3:o:enea:ose:*:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
emerson roc 800l remote terminal unit
All versions

CPE

  • cpe:2.3:h:emerson:roc_800l_remote_terminal_unit:-:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
emerson roc 800 remote terminal unit
All versions

CPE

  • cpe:2.3:h:emerson:roc_800_remote_terminal_unit:-:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
emerson dl 8000 remote terminal unit
All versions

CPE

  • cpe:2.3:h:emerson:dl_8000_remote_terminal_unit:-:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.

Change History

5 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2013-0689
NVD Published Date:
Oct 3, 2013
NVD Last Modified:
Jun 16, 2026
Source:
[email protected]
CVE-2013-0689 Details - Not Deferred