LOW · 3.2

CVE-2014-7251

XML external entity (XXE) vulnerability in the WebHMI server in Yokogawa Electric Corporation FAST/TOOLS before R9.05-SP2 allows local users to cause a denial of service (CPU or network traffic consum...

Vulnerability Description

XML external entity (XXE) vulnerability in the WebHMI server in Yokogawa Electric Corporation FAST/TOOLS before R9.05-SP2 allows local users to cause a denial of service (CPU or network traffic consumption) or read arbitrary files via unspecified vectors.

CVSS Score

3.2

LOW

AV:L/AC:L/Au:S/C:P/I:N/A:P
Confidentiality
PARTIAL
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
YokogawaFast\/Toolsr9.01

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-7251?

CVE-2014-7251 is a vulnerability with a CVSS score of 3.2 (LOW). XML external entity (XXE) vulnerability in the WebHMI server in Yokogawa Electric Corporation FAST/TOOLS before R9.05-SP2 allows local users to cause a denial of service (CPU or network traffic consum...

How severe is CVE-2014-7251?

CVE-2014-7251 has been rated LOW with a CVSS base score of 3.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-7251?

Check the references section above for vendor advisories and patch information. Affected products include: Yokogawa Fast\/Tools.