Known Vulnerabilities for products from Redlion

Listed below are 14 of the newest known vulnerabilities associated with the vendor "Redlion".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2020-27285 The default configuration of Crimson 3.1 (Build versions prior to 3119.001) allows a user to be able to read and modify the d... 9.1 - CRITICAL 2021-01-06 2021-01-08
CVE-2020-27283 An attacker could send a specially crafted message to Crimson 3.1 (Build versions prior to 3119.001) that could leak arbitrar... 5.3 - MEDIUM 2021-01-06 2021-01-08
CVE-2020-27279 A NULL pointer deference vulnerability has been identified in the protocol converter. An attacker could send a specially craf... 7.5 - HIGH 2021-01-06 2021-01-08
CVE-2020-16210 The affected product is vulnerable to reflected cross-site scripting, which may allow an attacker to remotely execute arbitra... 9 - CRITICAL 2020-09-01 2022-10-14
CVE-2020-16208 The affected product is vulnerable to cross-site request forgery, which may allow an attacker to modify different configurati... 8.8 - HIGH 2020-09-01 2020-09-08
CVE-2020-16206 The affected product is vulnerable to stored cross-site scripting, which may allow an attacker to remotely execute arbitrary ... 9 - CRITICAL 2020-09-01 2022-10-14
CVE-2020-16204 The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execu... 9.8 - CRITICAL 2020-09-01 2022-10-14
CVE-2019-10996 Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, allow multiple vulnerabilities to ... 7.8 - HIGH 2019-09-23 2023-03-01
CVE-2019-10990 Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, uses a hard-coded password to encr... 6.5 - MEDIUM 2019-09-23 2023-03-01
CVE-2019-10984 Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, allow multiple vulnerabilities to ... 7.8 - HIGH 2019-09-23 2023-02-13
CVE-2019-10978 Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, allow multiple vulnerabilities to ... 7.8 - HIGH 2019-09-23 2023-03-01
CVE-2017-16544 In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to g... 8.8 - HIGH 2017-11-20 2022-10-28
CVE-2017-14855 Red Lion HMI panels allow remote attackers to cause a denial of service (software exception) via an HTTP POST request to a lo... 8.6 - HIGH 2017-12-30 2019-10-03
CVE-2016-9335 A hard-coded cryptographic key vulnerability was identified in Red Lion Controls Sixnet-Managed Industrial Switches running f... 10 - CRITICAL 2018-05-09 2019-10-09

Known software with vulnerabilities from Redlion

Type Vendor Product Version
ApplicationRedlionCrimson-