Security Advisory

CVE-2025-66600

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-09 03:24:33
Last updated 2026-02-09 19:06:08
Assigner YokogawaGroup
State PUBLISHED

Description

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product lacks HSTS (HTTP Strict Transport Security) configuration. When an attacker performs a Man in the middle (MITM) attack, communications with the web server could be sniffed. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04