IM
IronMonkey Threat Research
‹ Back to ICS Advisories

YSAR-23-0003: Denial-of-Service Vulnerability in STARDOM

MEDIUM
CVSS 5.3
Date 2026-07-28T15:24:12+00:00
Source yokogawa
Published by Yokogawa

// Description

1 / 2YSAR-23-0003-E Yokogawa Security Advisory Report > All Rights Reserved. Copyright © 2023, Yokogawa Electric Corporation # Yokogawa Security Advisory Report YSAR-23-0003 Published on December 1, 2023 Last updated on December 1, 2023 # YSAR-23-0003: Denial-of-Service Vulnerability in STARDOM Overview: A denial-of-service (DoS) vulnerability has been found in STARDOM. Yokogawa has identified the range of affected products in this report. Review the report and confirm which p

// Vulnerabilities (1)

CVE ID CVSS Score Severity Description
CVE-2023-5915 5.3 medium
This vulnerability may allow to a remote attacker to cause a denial-of-service condition to the FCN/FCJ controller by sending a crafted packet. While sending the packet, the maintenance homepage of the controller could not be accessed. Therefore, functions of the maintenance homepage, changing configuration, viewing logs, etc. are not available. But the controller's operation is not stopped by the condition.

// Remediations (5)

Mitigation: Yokogawa has released the following mitigations for users to implement:
Yokogawa has released the following mitigations for users to implement:
Mitigation: By using the packet filter function of the FCN/FCJ controller, only allow connection from trusted ho
By using the packet filter function of the FCN/FCJ controller, only allow connection from trusted hosts. Revision up FCN/FCJ basic software to R4.20 or later for using the function.
Mitigation: Yokogawa strongly recommends all customers to establish and maintain a full security program, not on
Yokogawa strongly recommends all customers to establish and maintain a full security program, not only for the vulnerability identified in this YSAR. Security program components are: Patch updates, Anti-virus, Backup and recovery, zoning, hardening, whitelisting, firewall, etc. Yokogawa can assist in setting up and running the security program continuously. For considering the most effective risk mitigation plan, as a starting point, Yokogawa can perform a security risk assessment.
Mitigation: Take measures against the network so that an attacker cannot send a malicious packet
Take measures against the network so that an attacker cannot send a malicious packet
Mitigation: More details can also be found in Yokogawa's security advisory report number YSAR-23-0003.
More details can also be found in Yokogawa's security advisory report number YSAR-23-0003.

// References