Yokogawa FAST/TOOLS
cpe:2.3:a:yokogawa:fast/tools:*:*:*:*:*:*:*, +1 more
- >= R9.01, <= R10.04
An open redirect vulnerability has been identified in Yokogawa FAST/TOOLS versions R9.01 to R10.04, across several packages including RVSVRN, UNSVRN, HMIWEB, FTEES, and HMIMOB. The vulnerability arises because the application fails to properly validate request headers. This flaw allows attackers to insert invalid host headers, potentially redirecting users to malicious websites.
Exploitation of this vulnerability could lead to unauthorized redirection of users to malicious sites.
Users are advised to update to version R10.04 and apply the patch software CS_e12787. For assistance, contact your local Yokogawa supporting office.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.