CVE-2018-17900

Yokogawa STARDOM Controllers FCJ, FCN-100, FCN-RTU, FCN-500, All versions R4.10 and prior, The web application improperly protects credentials which could allow an attacker to obtain credentials for remote access to controllers.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
icscertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 49%
VendorProductVersion
yokogawafcj_firmware
𝑥
≤ r4.10
yokogawafcn-100_firmware
𝑥
≤ r4.10
yokogawafcn-rtu_firmware
𝑥
≤ r4.10
yokogawafcn-500_firmware
𝑥
≤ r4.10
𝑥
= Vulnerable software versions