# CVE-2025-66607

## Summary

- **CVE ID:** CVE-2025-66607
- **Severity:** MEDIUM
- **CVSS Score:** 6.3 (CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N)
- **CWE:** CWE-358
- **Published:** Feb 9, 2026
- **Last Modified:** Mar 13, 2026

## Description

A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.



The response header
contains an insecure setting. Users could be redirected to malicious sites by
an attacker.



The
affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to
R10.04

## Affected Products

- Yokogawa Electric Corporation — FAST/TOOLS (R9.01)

## References

- [CNA](https://web-material3.yokogawa.com/1/39206/files/YSAR-26-0001-E.pdf)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.18%
- **EPSS Percentile:** 7.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._