In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an unauthenticated user with network access could execute arbitrary commands in root context from a remote computer.



Subscriptions

Vendors Products
Emerson Subscribe
Gc1500xa Subscribe
Gc1500xa Firmware Subscribe
Gc370xa Subscribe
Gc370xa Firmware Subscribe
Gc700xa Subscribe
Gc700xa Firmware Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-50875 In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an unauthenticated user with network access could execute arbitrary commands in root context from a remote computer.
Fixes

Solution

Emerson recommends end users update the affected products' firmware. For update information, contact Emerson Security https://www.emerson.com/en-us/support/security-notifications  web page.


Workaround

No workaround given by the vendor.

History

Tue, 17 Jun 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-06-17T21:29:29.569Z

Reserved: 2024-01-03T00:41:24.578Z

Link: CVE-2023-46687

cve-icon Vulnrichment

Updated: 2024-08-02T20:53:20.875Z

cve-icon NVD

Status : Modified

Published: 2024-02-09T04:15:07.813

Modified: 2024-11-21T08:29:04.607

Link: CVE-2023-46687

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses