← Back to home
ICSA-16-334-02  ·  Published 2025-06-05  ·  View on CISA ICS-CERT ↗

Emerson DeltaV Easy Security Management Application Vulnerability

CVSS 6.8 MEDIUM

CVEs (1)

Remediations

  • The DeltaV Easy Security Management server and monitoring agents can be manually uninstalled by users with privileges to install/uninstall Windows applications on each given workstation or server. A more detailed procedure to uninstall the DeltaV Easy Security application is available in the Emerson’s Knowledge Base Article # NK-1600-0336 through Emerson’s Guardian Support Knowledge Base. Simplified steps are as follows: 1) Log into each one of the workstations/servers running DeltaV Easy Security and launch Windows Programs and Features. 2) Uninstall the ‘Easy Security Server and Agent’ application using the uninstall button. A computer reboot is not required to complete these steps. The built-in user account created during the DeltaV Easy Security installation is also removed during the uninstall process.
  • Emerson will provide additional details explaining how to manage USB ports and autorun features using Windows Group Policies in the near future as part of another Knowledge Base Article to be published through Emerson’s Guardian Support Knowledge Base.

Affected Vendors

Emerson

Affected Products (3)

Emerson · DeltaV V12.3
Emerson · DeltaV V12.3.1
Emerson · DeltaV V13.3

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more