CVE-2024-5650: Yokogawa Centum Cs 3000

High severity, CVSS 8.5. EPSS: 0.3% chance of exploitation in the next 30 days.

DLL Hijacking vulnerability has been found in CENTUM CAMS Log server provided by Yokogawa Electric Corporation. If an attacker is somehow able to intrude into a computer that installed affected product or access to a shared folder, by replacing the DLL file with a tampered one, it is possible to execute arbitrary programs with the authority of the SYSTEM account. The affected products and versions are as follows: CENTUM CS 3000 R3.08.10 to R3.09.50 CENTUM VP R4.01.00 to R4.03.00, R5.01.00 to R5.04.20, R6.01.00 to R6.11.10.

Affected products

  • Yokogawa Centum Cs 3000: from r3.08.10, up to and including r3.09.50
  • Yokogawa Centum Vp: from r4.01.00, up to and including f4.03.00; from r5.01.00, up to and including r5.04.20; from r6.01.00, up to and including r6.11.10
  • Yokogawa Electric Corporation Centum Cs 3000: from R3.08.10, up to and including R3.09.50
  • Yokogawa Electric Corporation Centum Vp: from R4.01.00, up to and including R4.03.00; from R5.01.00, up to and including R5.04.20; from R6.01.00, up to and including R6.11.10

Published 2024-06-17. Last modified 2026-06-17.