Vulnerability index

Browse CVEs

62 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Centum Vp Firmware CRITICAL 9.8
CVE-2022-21194

The following Yokogawa Electric products do not change the passwords of the internal Windows accounts from the initial configuration: CENTUM VP versi…

Mitigation only
Fix from $2,300 2022-03-11
Centum Vp Firmware CRITICAL 9.8
CVE-2022-23402

The following Yokogawa Electric products hard-code the password for CAMS server applications: CENTUM VP versions from R5.01.00 to R5.04.20 and versio…

Mitigation only
Fix from $2,300 2022-03-11
Centum Cs 3000 Firmware HIGH 8.8
CVE-2022-21808

Path traversal vulnerability exists in CAMS for HIS Server contained in the following Yokogawa Electric products: CENTUM CS 3000 versions from R3.08.…

Mitigation only
Fix from $1,950 2022-03-11
Centum Cs 3000 Firmware HIGH 8.8
CVE-2022-22729

CAMS for HIS Server contained in the following Yokogawa Electric products improperly authenticate the receiving packets. The authentication may be by…

Mitigation only
Fix from $1,950 2022-03-11
Centum Cs 3000 Firmware HIGH 8.1
CVE-2022-21177

There is a path traversal vulnerability in CAMS for HIS Log Server contained in the following Yokogawa Electric products: CENTUM CS 3000 versions fro…

Mitigation only
Fix from $1,950 2022-03-11
Centum Cs 3000 Firmware HIGH 8.1
CVE-2022-22145

CAMS for HIS Log Server contained in the following Yokogawa Electric products is vulnerable to uncontrolled resource consumption. CENTUM CS 3000 vers…

Mitigation only
Fix from $1,950 2022-03-11
Centum Cs 3000 Firmware HIGH 8.1
CVE-2022-22151

CAMS for HIS Log Server contained in the following Yokogawa Electric products fails to properly neutralize log outputs: CENTUM CS 3000 versions from …

Mitigation only
Fix from $1,950 2022-03-11
Centum Cs 3000 Firmware HIGH 7.8
CVE-2022-22141

'Long-term Data Archive Package' service implemented in the following Yokogawa Electric products creates some named pipe with imporper ACL configurat…

Mitigation only
Fix from $1,950 2022-03-11
Centum Cs 3000 Firmware HIGH 7.8
CVE-2022-22148

'Root Service' service implemented in the following Yokogawa Electric products creates some named pipe with improper ACL configuration. CENTUM CS 300…

Mitigation only
Fix from $1,950 2022-03-11
Centum Cs 3000 Firmware HIGH 7.8
CVE-2022-23401

The following Yokogawa Electric products contain insecure DLL loading issues. CENTUM CS 3000 versions from R3.08.10 to R3.09.00, CENTUM VP versions f…

Mitigation only
Fix from $1,950 2022-03-11
Centum Cs 3000 Firmware CRITICAL 9.8
CVE-2020-5608

CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08.10 to R3.09.50, CENTUM VP (includes CENTUM VP Small, Basic) R4.01.00 to R6.07.00, B…

Mitigation only
Fix from $2,300 2020-08-05
Centum Cs 3000 Firmware CRITICAL 9.8
CVE-2020-5609

Directory traversal vulnerability in CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08.10 to R3.09.50, CENTUM VP (includes CENTUM VP …

Mitigation only
Fix from $2,300 2020-08-05
Centum Cs 1000 Firmware CRITICAL 9.8
CVE-2015-5626

Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and e…

Mitigation only
Fix from $2,300 2020-02-05
Centum Cs 1000 Firmware CRITICAL 9.8
CVE-2015-5627

Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and e…

Mitigation only
Fix from $2,300 2020-02-05
Centum Cs 1000 Firmware CRITICAL 9.8
CVE-2015-5628EPSS 7%

Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and e…

Mitigation only
Fix from $2,300 2020-02-05
Exaopc HIGH 7.8
CVE-2019-6008

An unquoted search path vulnerability in Multiple Yokogawa products for Windows (Exaopc (R1.01.00 ? R3.77.00), Exaplog (R1.10.00 ? R3.40.00), Exaquan…

Mitigation only
Fix from $1,950 2019-12-26
B\/m 9000 Vp CRITICAL 9.8
CVE-2019-5909EPSS 5%

License Manager Service of YOKOGAWA products (CENTUM VP (R5.01.00 - R6.06.00), CENTUM VP Entry Class (R5.01.00 - R6.06.00), ProSafe-RS (R3.01.00 - R4…

Mitigation only
Fix from $2,300 2019-02-13
Centum Cs 3000 Firmware HIGH 7.5
CVE-2018-16196

Multiple Yokogawa products that contain Vnet/IP Open Communication Driver (CENTUM CS 3000(R3.05.00 - R3.09.50), CENTUM CS 3000 Entry Class(R3.05.00 -…

Mitigation only
Fix from $1,950 2019-01-09
Idefine For Prosafe Rs Firmware CRITICAL 9.8
CVE-2018-0651

Buffer overflow in the license management function of YOKOGAWA products (iDefine for ProSafe-RS R1.16.3 and earlier, STARDOM VDS R7.50 and earlier, S…

Mitigation only
Fix from $2,300 2019-01-09
Fcj Firmware CRITICAL 9.8
CVE-2018-17900

Yokogawa STARDOM Controllers FCJ, FCN-100, FCN-RTU, FCN-500, All versions R4.10 and prior, The web application improperly protects credentials which …

Mitigation only
Fix from $2,300 2018-10-12
Fcj Firmware HIGH 7.5
CVE-2018-17898

Yokogawa STARDOM Controllers FCJ,FCN-100, FCN-RTU, FCN-500, All versions R4.10 and prior, The controller application fails to prevent memory exhausti…

Mitigation only
Fix from $1,950 2018-10-12
Fcj Firmware MEDIUM 5.3
CVE-2018-17902

Yokogawa STARDOM Controllers FCJ, FCN-100, FCN-RTU, FCN-500, All versions R4.10 and prior, The application utilizes multiple methods of session manag…

Mitigation only
Fix from $1,600 2018-10-12
Fcj Firmware HIGH 8.1
CVE-2018-17896

Yokogawa STARDOM Controllers FCJ, FCN-100, FCN-RTU, FCN-500, All versions R4.10 and prior, The affected controllers utilize hard-coded credentials wh…

Mitigation only
Fix from $1,950 2018-10-12
Fcj Firmware CRITICAL 9.8
CVE-2018-10592EPSS 7%

Yokogawa STARDOM FCJ controllers R4.02 and prior, FCN-100 controllers R4.02 and prior, FCN-RTU controllers R4.02 and prior, and FCN-500 controllers R…

Mitigation only
Fix from $2,300 2018-07-31
B\/m9000 Cs MEDIUM 6.5
CVE-2018-8838

A weakness in access controls in CENTUM CS 1000 all versions, CENTUM CS 3000 versions R3.09.50 and earlier, CENTUM CS 3000 Small versions R3.09.50 an…

Mitigation only
Fix from $1,600 2018-04-17
Stardom Fcn\/fcj HIGH 7.3
CVE-2016-4860

Yokogawa STARDOM FCN/FCJ controller R1.01 through R4.01 does not require authentication for Logic Designer connections, which allows remote attackers…

Mitigation only
Fix from $1,950 2016-09-19
Exaopc HIGH 7.5
CVE-2014-5208EPSS 23%

BKBCopyD.exe in the Batch Management Packages in Yokogawa CENTUM CS 3000 through R3.09.50 and CENTUM VP through R4.03.00 and R5.x through R5.04.00, a…

Fix: after 3.71.10
Fix from $1,950 2014-12-22
Exaopc HIGH 8.3
CVE-2014-3888EPSS 62%

Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000, CENTUM CS 3000 R3.09.50 and earlier, CENTUM VP R5.03.20 and earlier, Exaop…

Fix: after 7.03.01
Fix from $1,950 2014-07-10
B\/m9000cs Software HIGH 8.3
CVE-2014-0782EPSS 57%

Stack-based buffer overflow in BKESimmgr.exe in the Expanded Test Functions package in Yokogawa CENTUM CS 1000, CENTUM CS 3000 Entry Class R3.09.50 a…

Fix: after 5.05.01
Fix from $1,950 2014-05-16
Centum Cs 3000 HIGH 9.3
CVE-2014-0781EPSS 25%

Heap-based buffer overflow in BKCLogSvr.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows remote attackers to execute arbitrary code via cra…

No fix yet
Fix from $1,950 2014-03-14