First published: Wed Aug 05 2020(Updated: )
Directory traversal vulnerability in CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08.10 to R3.09.50, CENTUM VP (includes CENTUM VP Small, Basic) R4.01.00 to R6.07.00, B/M9000CS R5.04.01 to R5.05.01, and B/M9000 VP R6.01.01 to R8.03.01 allows a remote unauthenticated attacker to create or overwrite arbitrary files and run arbitrary commands via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Yokogawa Centum Cs 3000 Firmware | >=r3.08.10<=r3.09.50 | |
Yokogawa CENTUM CS 3000 | ||
Yokogawa Centum Vp Firmware | >=r4.01.00<=r4.03.00 | |
Yokogawa Centum Vp Firmware | >=r5.01.00<=r5.04.20 | |
Yokogawa Centum Vp Firmware | >=r6.01.00<=r6.07.00 | |
Yokogawa Centum Vp | ||
Yokogawa B\/m9000cs Firmware | >=r5.04.01<=r5.05.01 | |
Yokogawa B\/m9000cs | ||
Yokogawa B\/m9000vp Firmware | >=r6.01.01<=r8.03.01 | |
Yokogawa B\/m9000vp |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-5609 is critical, with a severity value of 9.8.
The affected software for CVE-2020-5609 includes CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08.10 to R3.09.50, CENTUM VP (includes CENTUM VP Small, Basic) R4.01.00 to R6.07.00, B/M9000CS R5.04.01 to R5.05.01, and B/M9000 VP R6.01.01 to R8.03.01.
No, Yokogawa CENTUM CS 3000 is not vulnerable to CVE-2020-5609.
No, Yokogawa CENTUM VP is not vulnerable to CVE-2020-5609.
To fix the vulnerability in CVE-2020-5609, it is recommended to apply the latest firmware updates provided by Yokogawa.