Denial of Service Vulnerability in Yokogawa CENTUM VP / CS 3000 Controllers
CVE-2022-33939

7.5HIGH

What is CVE-2022-33939?

The CENTUM VP and CS 3000 controllers by Yokogawa are susceptible to a vulnerability that arises from the improper handling of communication packets. An attacker can exploit this flaw by sending specially crafted packets, resulting in resource consumption that may initiate a denial of service (DoS) condition within the ADL communication framework. Organizations using these controllers should assess their systems for potential exposure to mitigate any risks associated with this vulnerability.

Affected Version(s)

CENTUM VP / CS 3000 controller FCS CP31, CP33, CP345, CP401, CP451

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.