Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2649▼ 259 respecto a la semana anterior
Críticas / altas1356▲ 99 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)58▼ 469 respecto a la semana anterior
68 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Baja (2.1) | 0.17% | — | Yokogawa CentumAI | 30/3/2026 | 17/6/2026 | Hardcoded Password Vulnerability have been found in CENTUM. Affected products contain a hardcoded password for the user account (PROG) used for CENTUM Authentication Mode within the system. Under the following conditions, there is a risk that an attacker could log in as the PROG user. The default permission for the… | |
| Analizada | Media (6) | 0.17% | — | Yokogawa Vnet/ip Interface Package | 13/2/2026 | 17/6/2026 | A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected product receives maliciously crafted packets, Vnet/IP software stack process may be terminated. The affected products and versions are as follows: Vnet/IP Interface Package (for CENTUM VP R6 VP6C3300,… | |
| Analizada | Media (6) | 0.17% | — | Yokogawa Vnet/ip Interface Package | 13/2/2026 | 17/6/2026 | A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected product receives maliciously crafted packets, Vnet/IP software stack process may be terminated. The affected products and versions are as follows: Vnet/IP Interface Package (for CENTUM VP R6 VP6C3300,… | |
| Analizada | Media (6) | 0.17% | — | Yokogawa Vnet/ip Interface Package | 13/2/2026 | 17/6/2026 | A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected product receives maliciously crafted packets, Vnet/IP software stack process may be terminated. The affected products and versions are as follows: Vnet/IP Interface Package (for CENTUM VP R6 VP6C3300,… | |
| Analizada | Media (6) | 0.23% | — | Yokogawa Vnet/ip Interface Package | 13/2/2026 | 17/6/2026 | A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected product receives maliciously crafted packets, Vnet/IP software stack process may be terminated. The affected products and versions are as follows: Vnet/IP Interface Package (for CENTUM VP R6 VP6C3300,… | |
| Analizada | Media (6) | 0.21% | — | Yokogawa Vnet/ip Interface Package | 13/2/2026 | 17/6/2026 | A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected product receives maliciously crafted packets, Vnet/IP software stack process may be terminated. The affected products and versions are as follows: Vnet/IP Interface Package (for CENTUM VP R6 VP6C3300,… | |
| Analizada | Media (6) | 0.19% | — | Yokogawa Vnet/ip Interface Package | 13/2/2026 | 17/6/2026 | A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected product receive maliciously crafted packets, a DoS attack may cause Vnet/IP communication functions to stop or arbitrary programs to be executed. The affected products and versions are as follows: Vnet/IP… | |
| Analizada | Alta (7.1) | 0.16% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product supports old SSL/TLS versions, potentially allowing an attacker to decrypt communications with the web server. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES,… | |
| Analizada | Alta (8.8) | 0.18% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product supports weak cryptographic algorithms, potentially allowing an attacker to decrypt communications with the web server. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB,… | |
| Analizada | Media (6.9) | 0.16% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not properly validate request headers. When an attacker inserts an invalid host header, users could be redirected to malicious sites. The affected products and versions are as follows: FAST/TOOLS (Packages:… | |
| Analizada | Media (6.3) | 0.10% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product is vulnerable to Cross-Site Request Forgery (CSRF). When a user accesses a link crafted by an attacker, the user’s account could be compromised. The affected products and versions are as follows: FAST/TOOLS (Packages:… | |
| Analizada | Media (6.9) | 0.22% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Detailed messages are displayed on the error page. This information could be exploited by an attacker for other attacks. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES,… | |
| Analizada | Alta (8.7) | 0.41% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not properly validate URLs. An attacker could send specially crafted requests to steal files from the web server. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB,… | |
| Analizada | Media (6.3) | 0.18% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The response header contains an insecure setting. Users could be redirected to malicious sites by an attacker. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to… | |
| Analizada | Baja (2.1) | 0.23% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not properly encode URLs. An attacker could tamper with web pages or execute malicious scripts. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01… | |
| Analizada | Baja (2.1) | 0.18% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Since there are input fields on this webpage with the autocomplete attribute enabled, the input content could be saved in the browser the user is using. The affected products and versions are as follows: FAST/TOOLS (Packages:… | |
| Analizada | Baja (2.1) | 0.13% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The library version could be displayed on the web page. This information could be exploited by an attacker for other attacks. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES,… | |
| Analizada | Baja (2.1) | 0.28% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The web server accepts the OPTIONS method. An attacker could potentially use this information to carry out other attacks. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES,… | |
| Analizada | Media (6.9) | 0.32% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The web server accepts access by IP address. When a worm that randomly searches for IP addresses intrudes into the network, it could potentially be attacked by the worm. The affected products and versions are as follows: FAST/TOOLS… | |
| Analizada | Media (6.3) | 0.16% | — | Yokogawa Fast/tools | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not specify MIME types. When an attacker performs a content sniffing attack, malicious scripts could be executed. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB,… | |
| Aplazada | Alta (8.8) | 0.33% | — | Yokogawa Fast/toolsAI | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product lacks HSTS (HTTP Strict Transport Security) configuration. When an attacker performs a Man in the middle (MITM) attack, communications with the web server could be sniffed. The affected products and versions are as… | |
| Aplazada | Media (6.9) | 0.28% | — | Yokogawa Electric Corporation Fast ToolsAI | 9/2/2026 | 17/6/2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Physical paths could be displayed on web pages. This information could be exploited by an attacker for other attacks. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB)… | |
| Aplazada | Crítica (9.8) | 0.75% | — | Yokogawa Gx10AIYokogawa Gx20AIYokogawa Gp10AIYokogawa Gp20AI+12 | 18/4/2025 | 17/6/2026 | Insecure default settings have been found in recorder products provided by Yokogawa Electric Corporation. The default setting of the authentication function is disabled on the affected products. Therefore, when connected to a network with default settings, anyone can access all functions related to settings and… | |
| Aplazada | Alta (8.5) | 0.34% | — | Yokogawa Centum CS 3000AIYokogawa Centum VPAI | 17/6/2024 | 17/6/2026 | DLL Hijacking vulnerability has been found in CENTUM CAMS Log server provided by Yokogawa Electric Corporation. If an attacker is somehow able to intrude into a computer that installed affected product or access to a shared folder, by replacing the DLL file with a tampered one, it is possible to execute arbitrary… | |
| Modificada | Media (5.3) | 1.2% | — | Yokogawa Stardom FCJ FirmwareYokogawa Stardom FCN Firmware | 1/12/2023 | 17/6/2026 | A vulnerability of Uncontrolled Resource Consumption has been identified in STARDOM provided by Yokogawa Electric Corporation. This vulnerability may allow to a remote attacker to cause a denial-of-service condition to the FCN/FCJ controller by sending a crafted packet. While sending the packet, the maintenance… |