A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.
This product does not
properly validate URLs. An attacker could send specially crafted requests to
steal files from the web server.
The
affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to
R10.04
References
| Link | Resource |
|---|---|
| https://web-material3.yokogawa.com/1/39206/files/YSAR-26-0001-E.pdf | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-02-09 04:15
Updated : 2026-03-06 20:27
NVD link : CVE-2025-66608
Mitre link : CVE-2025-66608
CVE.ORG link : CVE-2025-66608
JSON object : View
Products Affected
yokogawa
- fast\/tools
CWE
CWE-29
Path Traversal: '\..\filename'
