PT-2026-7050 · Hmiweb+5 · Hmiweb+5

CVE-2025-66602

·

Publicado

2026-02-09

·

Atualizado

2026-03-05

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FAST/TOOLS versions R9.01 through R10.04
Description The web server component accepts access by IP address, potentially allowing exploitation by worms that randomly search for IP addresses. This could lead to unauthorized access if a worm intrudes into the network. The affected packages are RVSVRN, UNSVRN, HMIWEB, FTEES, and HMIMOB.
Recommendations FAST/TOOLS versions R9.01 through R10.04 should be updated to a newer, secure version.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-01846
CVE-2025-66602

Produtos afetados

Fast/Tools
Ftees
Hmimob
Hmiweb
Rvsvrn
Unsvrn