IM
IronMonkey Threat Research
‹ Back to ICS Advisories

YSAR-24-0002: DLL Hijacking Vulnerability in CENTUM CAMS Log server

HIGH
CVSS 8.5
Date 2026-07-28T15:24:06+00:00
Source yokogawa
Published by Yokogawa

// Description

1 / 2YSAR-24-0002-E Yokogawa Security Advisory Report > All Rights Reserved. Copyright © 2024, Yokogawa Electric Corporation # Yokogawa Security Advisory Report ## YSAR-24-0002 Published on June 17, 2024 Last updated on July 4, 2024 ## YSAR-24-0002: DLL Hijacking Vulnerability in CENTUM CAMS Log server Overview: DLL Hijacking vulnerability has been found in CENTUM CAMS Log server. Yokogawa has identified the range of affected products in this report. Please review the report a

// Vulnerabilities (1)

CVE ID CVSS Score Severity Description
CVE-2024-5650 8.5 high
If an attacker is somehow able to intrude into a computer that installed affected product or access to a shared folder, by replacing the DLL file with a tampered one, it is possible to execute arbitrary programs with the authority of the SYSTEM account.

// Affected Products (2)

Vendor Product Asset Type Purdue Level Firmware
Yokogawa Unknown dcs
L2
--
Yokogawa Unknown dcs
L2
--

// Remediations (4)

Mitigation: Yokogawa recommends that customers update to CENTUM VP or CENTUM VP Entry Class R6.11.12 or later. C
Yokogawa recommends that customers update to CENTUM VP or CENTUM VP Entry Class R6.11.12 or later. CENTUM CS and earlier versions of Centum VP will not be patched because these products are no longer supported.
Mitigation: For more information and details on implementing these mitigations and downloading the latest patch,
For more information and details on implementing these mitigations and downloading the latest patch, users should see Yokogawa advisory YSAR-24-0002.
Mitigation: Yokogawa strongly recommends all customers to establish and maintain a full security program, not ju
Yokogawa strongly recommends all customers to establish and maintain a full security program, not just for the vulnerability identified in this advisory. Security program components are: Patch updates, Anti-virus, Backup and recovery, zoning, hardening, whitelisting, firewall, etc. Yokogawa can assist in setting up and running a security program continuously. Yokogawa can perform a security risk assessment for users considering the most effective risk mitigation plan.
Mitigation: For questions related to this report, please contact Yokogawa
For questions related to this report, please contact Yokogawa

// References