Skip to main content

Reliance on IP Address for Authentication

CVE-2025-66602

Severity Medium
Score 6.9/10

Summary

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The web server accepts access by IP address. When a worm that randomly searches for IP addresses intrudes into the network, it could potentially be attacked by the worm. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04

  • LOW
  • NETWORK
  • HIGH
  • UNCHANGED
  • NONE
  • NONE
  • HIGH
  • HIGH

CWE-291 - Reliance on IP Address for Authentication

The software uses an IP address for authentication.

References

Advisory Timeline

  • Published