Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, uses a hard-coded password to encrypt protected files in transit and at rest, which may allow an attacker to access configuration files.
References
Link Resource
https://www.us-cert.gov/ics/advisories/icsa-19-248-01 Mitigation Third Party Advisory US Government Resource
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2019-09-23T15:46:43

Updated: 2019-09-23T15:46:43

Reserved: 2019-04-08T00:00:00


Link: CVE-2019-10990

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-09-23T16:15:14.837

Modified: 2023-03-01T01:19:39.573


Link: CVE-2019-10990

JSON object: View

cve-icon Redhat Information

No data.