CVE-2026-11833
HIGH
8.2
CVSS 4.0
Description
Overview:
A vulnerability has been found in FAST/TOOLS and CI Server. The web server may return a response containing the CI Server setting information. This information could
be exploited by an attacker for other attacks.
The affected products and versions are as follows:
FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04
CI Server (All packages) R1.01 to R1.04
Metadata
Severity & Metrics
8.2
HIGH CVSS 4.0
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Affected products (2)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| Yokogawa Electric Corporation | CI Server | — | R1.01 ≤ R1.04 |
| Yokogawa Electric Corporation | FAST/TOOLS | — | R9.01 ≤ R10.04 |
Weakness (CWE)
| CWE | Source | Description |
|---|---|---|
| CWE-319 | cna | CWE-319 Cleartext transmission of sensitive information |
CVSS scores (1)
| Score | Severity | Version | Source | Vector |
|---|---|---|---|---|
| 8.2 | HIGH | 4.0 | cna | CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N |