CVE-2020-27285

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
06/01/2021
Last modified:
08/01/2021

Description

The default configuration of Crimson 3.1 (Build versions prior to 3119.001) allows a user to be able to read and modify the database without authentication.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:redlion:crimson:3.1:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools