ICSA-14-343-01
·
Published 2025-06-06
·
View on CISA ICS-CERT ↗
Yokogawa FAST/TOOLS XML External Entity
CVSS 3.2
LOW
CVEs (1)
Remediations
- This vulnerability is mitigated by installing service pack (R9.05-SP2) for the FAST/TOOLS R9.05. To activate the service pack, the computer needs to be rebooted.
- Older systems, using earlier revisions (R9.01 – R9.04) than the target revision (R9.05), should upgrade to the target revision (R9.05) and then apply the service pack. Contact Yokogawa support and services if it is difficult to upgrade the system to the target revision (R9.05). In addition, the vulnerability will be corrected and upgraded to the latest version (R10.01) of FAST/TOOLS.
- For questions related to this vulnerability or how to obtain the patch software, please contact Yokogawa service department or access the following URL. (https://plus.yokogawa.co.jp/gw/gw.po?c-id=000037)
- See Yokogawa’s security advisory (YSAR-14-0004E) for more details. (http://www.yokogawa.com/dcs/security/ysar/YSAR-14-0004E.pdf)
- Yokogawa strongly suggests all customers introduce appropriate security measures not only for the identified vulnerability but also for the overall systems.
Affected Vendors
Yokogawa
Affected Products (1)
Yokogawa
·
FAST/TOOLS
R9.01_though_R9.05_SP1
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more