← Back to home
ICSA-22-174-01  ·  Published 2022-06-23  ·  View on CISA ICS-CERT ↗

Yokogawa STARDOM

CVSS 6.3 MEDIUM

Risk Summary

Successful exploitation of these vulnerabilities could allow attackers to alter device configuration settings and tamper with device firmware.

Remediations

  • Enable the packet filtering functionality of the FCN/FCJ controller to only allow connections from trusted hosts.
  • Ensure network traffic cannot be captured by unauthorized users.
  • Yokogawa strongly recommends users establish and maintain an operational security program, including regular patching, anti-virus, backup and recovery processes, network segmentation, hardened networks, whitelisting, firewalls, etc. Yokogawa can assist users in setting up and maintaining these security programs, including performing an initial security risk assessment.
  • Yokogawa considers patching to be the best mitigation against these vulnerabilities. Users are encouraged to contact Yokogawa to discuss the best course of action for individual systems.
  • See Yokogawa's security advisory report YSAR-22-007 for more information.

Affected Vendors

Yokogawa

Affected Products (2)

Yokogawa · STARDOM FCN/FCJ >= R1.01 | <= R4.31
Yokogawa · STARDOM FCN/FCJ >= R1.01 | <= R4.31 (Only affected by CVE-222-30997)

Affected Sectors

Multiple

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more