CVE-2025-1924 PUBLISHED

Assigner: YokogawaGroup
Reserved: 04.03.2025 Published: 13.02.2026 Updated: 13.02.2026

A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected product receive maliciously crafted packets, a DoS attack may cause Vnet/IP communication functions to stop or arbitrary programs to be executed. The affected products and versions are as follows: Vnet/IP Interface Package (for CENTUM VP R6 VP6C3300, CENTUM VP R7 VP7C3300) R1.07.00 or earlier

Metrics

CVSS Vector: CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:L/SA:L
CVSS Score: 6

Product Status

Vendor Yokogawa Electric Corporation
Product Vnet/IP Interface Package
Versions Default: unknown
  • Version R1.07.00 or earlier is affected

References

Problem Types

  • CWE-191 Integer Underflow (Wrap or Wraparound) CWE
  • CWE-787 Out-of-bounds Write CWE