cbcvebase.

Yokogawa Centum Cs 3000 vulnerabilities

10 known vulnerabilities affecting yokogawa/centum_cs_3000.

Total CVEs
10
CISA KEV
0
Public exploits
5
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH4MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2014-0783P2CRITICALCVSS 9.0PoC≤ r3.09.50vr3.01+11 more2014-03-14
CVE-2014-0783 [CRITICAL] CWE-121 CVE-2014-0783: Stack-based buffer overflow in BKHOdeq.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows re Stack-based buffer overflow in BKHOdeq.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows remote attackers to execute arbitrary code via a crafted TCP packet.
nvd
CVE-2014-0782P2HIGHCVSS 8.3PoCfixed in R3.09.502014-05-16
CVE-2014-0782 [HIGH] CWE-121 CVE-2014-0782: Stack-based buffer overflow in BKESimmgr.exe in the Expanded Test Functions package in Yokogawa CENT Stack-based buffer overflow in BKESimmgr.exe in the Expanded Test Functions package in Yokogawa CENTUM CS 1000, CENTUM CS 3000 Entry Class R3.09.50 and earlier, CENTUM VP R5.03.00 and earlier, CENTUM VP Entry Class R5.03.00 and earlier, Exaopc R3.71.02 and earlier, B/M9000CS R5.05.01 and earlier, and B/M9000 VP R7.03.01 and earlier allows remote attacke
nvd
CVE-2014-0784P2HIGHCVSS 8.3PoC≤ r3.09.50vr3.01+10 more2014-03-14
CVE-2014-0784 [HIGH] CWE-121 CVE-2014-0784: Stack-based buffer overflow in BKBCopyD.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows r Stack-based buffer overflow in BKBCopyD.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows remote attackers to execute arbitrary code via a crafted TCP packet.
nvd
CVE-2014-0781P2CRITICALCVSS 9.3PoC≤ r3.09.50vr3.01+11 more2014-03-14
CVE-2014-0781 [CRITICAL] CWE-122 CVE-2014-0781: Heap-based buffer overflow in BKCLogSvr.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows r Heap-based buffer overflow in BKCLogSvr.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows remote attackers to execute arbitrary code via crafted UDP packets.
nvd
CVE-2014-5208P2HIGHCVSS 7.5PoCvr3.01vr3.02+10 more2014-12-22
CVE-2014-5208 [HIGH] CVE-2014-5208: BKBCopyD.exe in the Batch Management Packages in Yokogawa CENTUM CS 3000 through R3.09.50 and CENTUM BKBCopyD.exe in the Batch Management Packages in Yokogawa CENTUM CS 3000 through R3.09.50 and CENTUM VP through R4.03.00 and R5.x through R5.04.00, and Exaopc through R3.72.10, does not require authentication, which allows remote attackers to read arbitrary files via a RETR operation, write to arbitrary files via a STOR operation, or obtain sensitive database-l
nvd
CVE-2015-5628P2CRITICALCVSS 9.8vR3.09.50 and earlier2020-02-05
CVE-2015-5628 [CRITICAL] CWE-787 CVE-2015-5628: Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and earlier, CENTUM VP R5.04.20 and earlier, CENTUM VP Entry R5.04.20 and earlier, ProSafe-RS R3.02.10 and earlier, Exaopc R3.72.00 and earlier, Exaquantum R2.85.00 and earlier, Exaquantum/Batch R2.50.30 and
nvd
CVE-2015-5627P3CRITICALCVSS 9.8vR3.09.50 and earlier2020-02-05
CVE-2015-5627 [CRITICAL] CWE-787 CVE-2015-5627: Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and earlier, CENTUM VP R5.04.20 and earlier, CENTUM VP Entry R5.04.20 and earlier, ProSafe-RS R3.02.10 and earlier, Exaopc R3.72.00 and earlier, Exaquantum R2.85.00 and earlier, Exaquantum/Batch R2.50.30 and
nvd
CVE-2015-5626P3CRITICALCVSS 9.8vR3.09.50 and earlier2020-02-05
CVE-2015-5626 [CRITICAL] CWE-787 CVE-2015-5626: Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and earlier, CENTUM VP R5.04.20 and earlier, CENTUM VP Entry R5.04.20 and earlier, ProSafe-RS R3.02.10 and earlier, Exaopc R3.72.00 and earlier, Exaquantum R2.85.00 and earlier, Exaquantum/Batch R2.50.30 and
nvd
CVE-2023-26593P3HIGHCVSS 7.8≥ r2.01.00, ≤ r3.09.502023-04-11
CVE-2023-26593 [HIGH] CWE-312 CVE-2023-26593: CENTUM series provided by Yokogawa Electric Corporation are vulnerable to cleartext storage of sensi CENTUM series provided by Yokogawa Electric Corporation are vulnerable to cleartext storage of sensitive information. If an attacker who can login or access the computer where the affected product is installed tampers the password file stored in the computer, the user privilege which CENTUM managed may be escalated. As a result, the control system may
nvd
CVE-2018-8838P4MEDIUMCVSS 6.5≤ r3.09.502018-04-17
CVE-2018-8838 [MEDIUM] CVE-2018-8838: A weakness in access controls in CENTUM CS 1000 all versions, CENTUM CS 3000 versions R3.09.50 and e A weakness in access controls in CENTUM CS 1000 all versions, CENTUM CS 3000 versions R3.09.50 and earlier, CENTUM CS 3000 Small versions R3.09.50 and earlier, CENTUM VP versions R6.03.10 and earlier, CENTUM VP Small versions R6.03.10 and earlier, CENTUM VP Basic versions R6.03.10 and earlier, Exaopc versions R3.75.00 and earlier, B/M9000 CS all versions, and
nvd
Yokogawa Centum Cs 3000 vulnerabilities | cvebase