CVE-2014-0782 is a stack-based buffer overflow in the BKESimmgr.exe component of several Yokogawa CENTUM and B/M9000 industrial control systems, allowing remote attackers to execute arbitrary code via a crafted packet. With a CVSS score of 8.3, it is a high-severity vulnerability that can be exploited remotely with medium attack complexity, potentially leading to partial confidentiality, integrity, and complete availability compromise. While not actively exploited in the wild, a Metasploit module exists, and its FAUCET Risk Score of 98/100 indicates significant exploitability, though it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 5.05.01CPE matchmatch criteria | cpe:2.3:a:yokogawa:b\/m9000cs_software:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:h:yokogawa:b\/m9000cs:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:yokogawa:centum_cs_1000_software:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:h:yokogawa:centum_cs_1000:-:*:*:*:*:*:*:* | ||
<= 2.23.00CPE matchmatch criteria | cpe:2.3:a:yokogawa:centum_cs_3000_software:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.