6.9
CVSSv2

CVE-2022-22148

Published: 11/03/2022 Updated: 18/03/2022
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

'Root Service' service implemented in the following Yokogawa Electric products creates some named pipe with improper ACL configuration. CENTUM CS 3000 versions from R3.08.10 to R3.09.00, CENTUM VP versions from R4.01.00 to R4.03.00, from R5.01.00 to R5.04.20, and from R6.01.00 to R6.08.00, Exaopc versions from R3.72.00 to R3.79.00.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

yokogawa centum_cs_3000_firmware

yokogawa centum_cs_3000_entry_firmware

yokogawa centum_vp_firmware

yokogawa centum_vp_entry_firmware

yokogawa exaopc

ICS Advisories