Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pc5p-g2cg-mr66

Опубликовано: 09 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.3
CVSS3: 6.1

Описание

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.

This product does not specify MIME types. When an attacker performs a content sniffing attack, malicious scripts could be executed.

The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.

This product does not specify MIME types. When an attacker performs a content sniffing attack, malicious scripts could be executed.

The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04

EPSS

Процентиль: 12%
0.00041
Низкий

6.3 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-358

Связанные уязвимости

CVSS3: 6.1
nvd
3 месяца назад

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not specify MIME types. When an attacker performs a content sniffing attack, malicious scripts could be executed. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04

CVSS3: 6.5
fstec
3 месяца назад

Уязвимость SCADA-системы Yokogawa FAST/TOOLS, связанная с некорректной проверкой безопасности для стандартных элементов, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 12%
0.00041
Низкий

6.3 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-358