← Back

CVE-2022-27188

nvd nist
Published: Apr 15, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

OS command injection vulnerability exists in CENTUM VP R4.01.00 to R4.03.00, CENTUM VP Small R4.01.00 to R4.03.00, CENTUM VP Basic R4.01.00 to R4.03.00, and B/M9000 VP R6.01.01 to R6.03.02, which may allow an attacker who can access the computer where the affected product is installed to execute an arbitrary OS command by altering a file generated using Graphic Builder.

Affected (4)

2 products
B/m9000 Vp
Centum Vp
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
From r6.01.01 to r6.03.02
Yokogawa
From r4.01.00 to r4.03.00
From r4.01.00 to r4.03.00
From r4.01.00 to r4.03.00

References (4)

Source: vultures@jpcert.or.jp
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.