Unrated severityNVD Advisory· Published Apr 15, 2022· Updated Aug 3, 2024
CVE-2022-27188
CVE-2022-27188
Description
OS command injection vulnerability exists in CENTUM VP R4.01.00 to R4.03.00, CENTUM VP Small R4.01.00 to R4.03.00, CENTUM VP Basic R4.01.00 to R4.03.00, and B/M9000 VP R6.01.01 to R6.03.02, which may allow an attacker who can access the computer where the affected product is installed to execute an arbitrary OS command by altering a file generated using Graphic Builder.
Affected products
1- Yokogawa Electric Corporation/Centum Vp Series With Vp6e5150(graphic Builder) Installed And B/m9000 Vpv5Range: CENTUM VP R4.01.00 to R4.03.00, CENTUM VP Small R4.01.00 to R4.03.00, CENTUM VP Basic R4.01.00 to R4.03.00, and B/M9000 VP R6.01.01 to R6.03.02
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- jvn.jp/vu/JVNVU99204686/index.htmlmitrex_refsource_MISC
- www.yokogawa.com/library/resources/white-papers/yokogawa-security-advisory-report-list/mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.