Yokogawa CENTUM CS 3000 Stack-based Buffer Overflow
68Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendcvss 8.3epss 57%
from disclosure to weapon0 days
Published on NVDMay 16
1st PoCMay 12
metasploitMar 10
exploitation probability
57%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Stack-based buffer overflow in BKESimmgr.exe in the Expanded Test Functions package in Yokogawa CENTUM CS 1000, CENTUM CS 3000 Entry Class R3.09.50 and earlier, CENTUM VP R5.03.00 and earlier, CENTUM VP Entry Class R5.03.00 and earlier, Exaopc R3.71.02 and earlier, B/M9000CS R5.05.01 and earlier, and B/M9000 VP R7.03.01 and earlier allows remote attackers to execute arbitrary code via a crafted packet.
AV:N/AC:M/Au:N/C:P/I:P/A:C
Affected products
Yokogawa · CENTUM CS 3000public PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/33331⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://ics-cert.us-cert.gov/advisories/ICSA-14-133-01https://community.rapid7.com/community/metasploit/blog/2014/03/10/yokogawa-centum-cs3000-vulnerabilitieshttps://www.cisa.gov/news-events/ics-advisories/icsa-14-070-01ahttp://www.securityfocus.com/bid/66130http://www.yokogawa.com/dcs/security/ysar/dcs-ysar-index-en.htm.http://www.yokogawa.com/dcs/security/ysar/YSAR-14-0001E.pdf