CVE Vulnerabilities

CVE-2025-66604

Cleartext Transmission of Sensitive Information

Published: Feb 09, 2026 | Modified: Mar 05, 2026
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.

The library version could be displayed on the web page. This information could be exploited by an attacker for other attacks.

The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04

Weakness

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

Affected Software

NameVendorStart VersionEnd Version
Fast/toolsYokogawar9.01 (including)r10.04 (including)

Potential Mitigations

References