First published: Fri Oct 12 2018(Updated: )
Yokogawa STARDOM Controllers FCJ, FCN-100, FCN-RTU, FCN-500, All versions R4.10 and prior, The web application improperly protects credentials which could allow an attacker to obtain credentials for remote access to controllers.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Yokogawa Fcj Firmware | <=r4.10 | |
Yokogawa Fcj | ||
Yokogawa Fcn-100 Firmware | <=r4.10 | |
Yokogawa Fcn-100 | ||
Yokogawa Fcn-rtu Firmware | <=r4.10 | |
Yokogawa Fcn-rtu | ||
Yokogawa Fcn-500 Firmware | <=r4.10 | |
Yokogawa Fcn-500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-17900 is a critical vulnerability that affects Yokogawa STARDOM Controllers FCJ, FCN-100, FCN-RTU, and FCN-500 versions R4.10 and prior.
An attacker can exploit CVE-2018-17900 to obtain credentials for remote access to the affected controllers.
CVE-2018-17900 has a severity rating of 9.8 (Critical).
Yokogawa STARDOM Controllers FCJ, FCN-100, FCN-RTU, and FCN-500 versions R4.10 and prior are affected.
To fix CVE-2018-17900, it is recommended to update the affected STARDOM Controllers to a version higher than R4.10.