Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, uses a hard-coded password to encrypt protected files in transit and at rest, which may allow an attacker to access configuration files.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-2704 | Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, uses a hard-coded password to encrypt protected files in transit and at rest, which may allow an attacker to access configuration files. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.us-cert.gov/ics/advisories/icsa-19-248-01 |
|
History
Wed, 03 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-06-02T20:07:19.166Z
Reserved: 2019-04-08T00:00:00.000Z
Link: CVE-2019-10990
Updated: 2024-08-04T22:40:15.501Z
Status : Modified
Published: 2019-09-23T16:15:14.837
Modified: 2026-06-02T21:16:23.030
Link: CVE-2019-10990
No data.
OpenCVE Enrichment
No data.
EUVD