CVE-2022-23402: Yokogawa Centum Vp Entry Firmware

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

The following Yokogawa Electric products hard-code the password for CAMS server applications: CENTUM VP versions from R5.01.00 to R5.04.20 and versions from R6.01.00 to R6.08.00, Exaopc versions from R3.72.00 to R3.79.00

Affected products

  • Yokogawa Centum Vp Entry Firmware: from r5.01.00, up to and including r5.04.20; from r6.01.00, before r6.09.00 (fixed in r6.09.00)
  • Yokogawa Centum Vp Firmware: from r5.01.00, up to and including r5.04.20; from r6.01.00, before r6.09.00 (fixed in r6.09.00)
  • Yokogawa Exaopc: from r3.72.00, before r3.80.00 (fixed in r3.80.00)

Published 2022-03-11. Last modified 2026-06-17.