CVE-2018-17900

EUVD-2018-9641
Yokogawa STARDOM Controllers FCJ, FCN-100, FCN-RTU, FCN-500, All versions R4.10 and prior, The web application improperly protects credentials which could allow an attacker to obtain credentials for remote access to controllers.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 49%
Affected Products (NVD)
VendorProductVersion
yokogawafcj_firmware
𝑥
≤ r4.10
yokogawafcn-100_firmware
𝑥
≤ r4.10
yokogawafcn-rtu_firmware
𝑥
≤ r4.10
yokogawafcn-500_firmware
𝑥
≤ r4.10
𝑥
= Vulnerable software versions