Vulnerabilities > Redlion > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-11-17 CVE-2022-3090 Unspecified vulnerability in Redlion Crimson
Red Lion Controls Crimson 3.0 versions 707.000 and prior, Crimson 3.1 versions 3126.001 and prior, and Crimson 3.2 versions 3.2.0044.0 and prior are vulnerable to path traversal.
network
low complexity
redlion
5.3
2022-04-20 CVE-2022-27179 Unspecified vulnerability in Redlion Da50N Firmware
A malicious actor having access to the exported configuration file may obtain the stored credentials and thereby gain access to the protected resource.
network
low complexity
redlion
6.5
2021-01-06 CVE-2020-27283 Improper Resource Shutdown or Release vulnerability in Redlion Crimson 3.1
An attacker could send a specially crafted message to Crimson 3.1 (Build versions prior to 3119.001) that could leak arbitrary memory locations.
network
low complexity
redlion CWE-404
5.3
2019-09-23 CVE-2019-10990 Use of Hard-coded Credentials vulnerability in Redlion Crimson
Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, uses a hard-coded password to encrypt protected files in transit and at rest, which may allow an attacker to access configuration files.
network
low complexity
redlion CWE-798
6.5