IM
IronMonkey Threat Research
‹ Back to ICS Advisories

YSAR-22-0001: Vulnerabilities in CENTUM and Exaopc

HIGH
CVSS 8.6
Date 2026-07-28T15:26:58+00:00
Source yokogawa
Published by Yokogawa

// Description

1 / 4YSAR-22-0001-E Yokogawa Security Advisory Report > All Rights Reserved. Copyright © 2022, Yokogawa Electric Corporation # Yokogawa Security Advisory Report # YSAR-22-0001 Published on January 7, 2022 Last updated on February 9, 2022 ## YSAR-22-0001: Vulnerabilities in CENTUM and Exaopc Overview: Vulnerabilities have been found in CENTUM and Exaopc. Yokogawa has identified the range of affected products in this report. Review the report and confirm which products are affec

// Vulnerabilities (10)

CVE ID CVSS Score Severity Description
CVE-2022-23401 8.6 high
No description available.
CVE-2022-21194 8.6 high
If the password for the OS account created when installing the product has not been changed from the default password and the hard-coded credentials (default password) for the account are used, an attacker could access files and shared memory in the system. The product is not affected by this vulnerability if the default password has been properly changed after installation.CVE-2022-21194 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:H).
CVE-2022-22141 8.6 high
No description available.
CVE-2022-22151 8.6 high
A local attacker may be able to utilize a named pipe with inappropriate access privileges to execute arbitrary programs.CVE-2022-22148 has been assigned to this vulnerability. A CVSS v3 base score of 8.6 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).
CVE-2022-22148 8.6 high
No description available.
CVE-2022-22145 8.6 high
CENTUM and Exaopc have a DLL injection vulnerability and a DLL planting vulnerability using the DLL search order vulnerability. See this link for further details on this exploit type.CVE-2022-23401 has been assigned to this vulnerability. A CVSS v3 base score of 8.3 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H).
CVE-2022-22729 8.6 high
A malformed packet sent to a CAMS for HIS server may exploit an output neutralization vulnerability, allowing an attacker to crash the server or manipulate log files.CVE-2022-22151, CVE-2022-21177. and CVE-2022-22145 have been assigned to these vulnerabilities. A CVSS v3 base score of 5.9 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:H).
CVE-2022-21177 8.6 high
A local attacker may be able to utilize a named pipe with inappropriate access privileges to delete arbitrary files.CVE-2022-22141 has been assigned to this vulnerability. A CVSS v3 base score of 6.6 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H).
CVE-2022-23402 8.6 high
If the hard-coded credentials for CAMS server application are used to send a malformed packet to CAMS server, all functions of CAMS server can be abused, including suppressing alarms.CVE-2022-23402 has been assigned to this vulnerability. A CVSS v3 base score of 7.8 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:C/C:L/I:H/A:H).
CVE-2022-21808 8.6 high
A malformed packet sent to a CAMS for HIS server may allow an attacker to achieve relative path traversal and then read and write files or execute commands.CVE-2022-21808 and CVE-2022-22729 have been assigned to these vulnerabilities. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).

// Affected Products (2)

Vendor Product Asset Type Purdue Level Firmware
Yokogawa Unknown dcs
L2
--
Yokogawa Unknown dcs
L2
--

// Remediations (13)

Mitigation: The initial password is set by default for the predefined user accounts in CENTUM VP and Exaopc. Be
The initial password is set by default for the predefined user accounts in CENTUM VP and Exaopc. Be sure to change the initial password.
Mitigation: When changing the password, ensure that the same password is set in the entire system.
When changing the password, ensure that the same password is set in the entire system.
Mitigation: CENTUM CS 3000: consider system upgrade to the latest revision of CENTUM VP
CENTUM CS 3000: consider system upgrade to the latest revision of CENTUM VP
Mitigation: For questions related to this report, please contact Yokogawa security.
For questions related to this report, please contact Yokogawa security.
Mitigation: Exaopc: update to R3.80.00 or later
Exaopc: update to R3.80.00 or later
Mitigation: CENTUM VP: update to R6.09.00 or later
CENTUM VP: update to R6.09.00 or later
Mitigation: Yokogawa can assist in setting up and running security programs. For considering the most effective
Yokogawa can assist in setting up and running security programs. For considering the most effective risk mitigation plan, as a starting point, Yokogawa can perform a security risk assessment.
Mitigation: For more information about lists of the predefined user accounts in CENTUM VP and how to change the
For more information about lists of the predefined user accounts in CENTUM VP and how to change the password for a user account, refer to: "CENTUM VP Security Guide"
Mitigation: Yokogawa strongly recommends users establish and maintain a full security program. Security program
Yokogawa strongly recommends users establish and maintain a full security program. Security program components include patch updates, anti-virus, backup and recovery, zoning, hardening, whitelisting, firewalls, etc.
Mitigation: The method of obtaining and updating patch software depends on the support contract of each installa
The method of obtaining and updating patch software depends on the support contract of each installation. Users who do not know how to obtain the update and install it should contact their service/sales person.
Mitigation: For questions related to this report, please contact Yokogawa.
For questions related to this report, please contact Yokogawa.
Mitigation: Please see Yokogawa's full report (YSAR-22-0001) for update details.
Please see Yokogawa's full report (YSAR-22-0001) for update details.
Mitigation: Follow the installation instructions for each product and change the password of the OS account crea
Follow the installation instructions for each product and change the password of the OS account created when installing the product to an appropriate one.

// References