Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2018-8838 Details

Description

A weakness in access controls in CENTUM CS 1000 all versions, CENTUM CS 3000 versions R3.09.50 and earlier, CENTUM CS 3000 Small versions R3.09.50 and earlier, CENTUM VP versions R6.03.10 and earlier, CENTUM VP Small versions R6.03.10 and earlier, CENTUM VP Basic versions R6.03.10 and earlier, Exaopc versions R3.75.00 and earlier, B/M9000 CS all versions, and B/M9000 VP versions R8.01.01 and earlier may allow a local attacker to exploit the message management function of the system. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:H).

Metrics

CVSS 3.x Severity and Vector Strings:

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

URLSource(s)Tag(s)
https://ics-cert.us-cert.gov/advisories/ICSA-18-102-01 CVEThird Party AdvisoryUS Government Resource
https://ics-cert.us-cert.gov/advisories/ICSA-18-102-01 [email protected]Third Party AdvisoryUS Government Resource

Weakness Enumeration

CWE-IDCWE NameSource
NVD-CWE-noinfoInsufficient Information to Classify Weakness[email protected]

Affected Products

ProductVersions
yokogawa b/m9000 cs
All versions

CPE

  • cpe:2.3:a:yokogawa:b/m9000_cs:-:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
yokogawa b/m9000 vp
<= r8.01.01

CPE

  • cpe:2.3:a:yokogawa:b/m9000_vp:*:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
yokogawa centum cs 3000
<= r3.09.50

CPE

  • cpe:2.3:a:yokogawa:centum_cs_3000:*:*:*:*:*:*:*:*
  • cpe:2.3:a:yokogawa:centum_cs_3000:*:*:*:*:small:*:*:*

Remediation

  • No remediation found in references.
yokogawa centum vp
<= r6.03.10

CPE

  • cpe:2.3:a:yokogawa:centum_vp:*:*:*:*:*:*:*:*
  • cpe:2.3:a:yokogawa:centum_vp:*:*:*:*:basic:*:*:*
  • cpe:2.3:a:yokogawa:centum_vp:*:*:*:*:small:*:*:*

Remediation

  • No remediation found in references.
yokogawa exaopc
<= r3.75.00

CPE

  • cpe:2.3:a:yokogawa:exaopc:*:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.

Change History

6 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2018-8838
NVD Published Date:
Apr 17, 2018
NVD Last Modified:
Jun 17, 2026
Source:
[email protected]
CVE-2018-8838 Details - Not Deferred