The default configuration of Crimson 3.1 (Build versions prior to 3119.001) allows a user to be able to read and modify the database without authentication.
References
Link Resource
https://us-cert.cisa.gov/ics/advisories/icsa-21-005-04 Third Party Advisory US Government Resource
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2021-01-06T15:01:44

Updated: 2021-01-06T15:01:44

Reserved: 2020-10-19T00:00:00


Link: CVE-2020-27285

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-01-06T15:15:14.600

Modified: 2021-01-08T21:02:53.113


Link: CVE-2020-27285

JSON object: View

cve-icon Redhat Information

No data.

CWE