CVE-2025-66595

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product is vulnerable to Cross-Site Request Forgery (CSRF). When a user accesses a link crafted by an attacker, the user’s account could be compromised. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04
Configurations

Configuration 1 (hide)

cpe:2.3:a:yokogawa:fast\/tools:*:*:*:*:*:*:*:*

History

06 Mar 2026, 20:28

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad en FAST/TOOLS proporcionado por Yokogawa Electric Corporation. Este producto es vulnerable a falsificación de petición en sitios cruzados (CSRF). Cuando un usuario accede a un enlace diseñado por un atacante, la cuenta del usuario podría verse comprometida. Los productos y versiones afectados son los siguientes: FAST/TOOLS (Paquetes: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 a R10.04
First Time Yokogawa fast\/tools
Yokogawa
CPE cpe:2.3:a:yokogawa:fast\/tools:*:*:*:*:*:*:*:*
References () https://web-material3.yokogawa.com/1/39206/files/YSAR-26-0001-E.pdf - () https://web-material3.yokogawa.com/1/39206/files/YSAR-26-0001-E.pdf - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.4

09 Feb 2026, 05:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-09 05:16

Updated : 2026-03-06 20:28


NVD link : CVE-2025-66595

Mitre link : CVE-2025-66595

CVE.ORG link : CVE-2025-66595


JSON object : View

Products Affected

yokogawa

  • fast\/tools
CWE
CWE-352

Cross-Site Request Forgery (CSRF)