← Back to home
ICSA-13-259-01A  ·  Published 2025-06-06  ·  View on CISA ICS-CERT ↗

Emerson ROC800 Multiple Vulnerabilities (Update A)

CVSS 10.0 CRITICAL

Remediations

  • The best mitigation for these vulnerabilities is to install the vendor patch. The Emerson Process Management patch is available via the following web link of which a user name and password is required: (http://www3.emersonprocess.com/remote/support/support_login.html)
  • Emerson has identified and verified that a third-party secure router, the Moxa EDR-810, mitigates the identified vulnerabilities when used in combination with the ROC800 platform. Emerson asserts that by adding the EDR-810 between the host and the field device it is virtually impossible for an attacker to eavesdrop on communications or falsify commands.
  • The EDR-810 is a highly integrated industrial multiport secure router with Firewall/NAT/VPN. The compatibility of the EDR-810 with the ROC800 platform has been tested and verified by Emerson Remote Automation Solutions. Emerson has determined that the EDR-810 is suitable for field installation. The EDR-810 uses IPSec server or client mode for encryption and authentication of all IP packets at the network layer to ensure confidentiality and sender authentication.
  • Additional information about the Moxa EDR-810 secure router is available at the following location: (http://www.moxa.com/product/EDR-810.htm)

Affected Vendors

Emerson Process Management

Affected Products (3)

Emerson Process Management · ROC800 <=3.50
Emerson Process Management · DL8000 <=2.30
Emerson Process Management · ROC800L <=1.20

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more