CVE-2020-10632

Inadequate folder security permissions in Emerson OpenEnterprise versions through 3.3.4 may allow modification of important configuration files, which could cause the system to fail or behave in an unpredictable manner.
References
Link Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-20-140-02 Mitigation Third Party Advisory US Government Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-20-140-02 Mitigation Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

cpe:2.3:a:emerson:openenterprise_scada_server:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:55

Type Values Removed Values Added
References () https://www.cisa.gov/uscert/ics/advisories/icsa-20-140-02 - Mitigation, Third Party Advisory, US Government Resource () https://www.cisa.gov/uscert/ics/advisories/icsa-20-140-02 - Mitigation, Third Party Advisory, US Government Resource
CVSS v2 : 5.0
v3 : 5.3
v2 : 5.0
v3 : 8.8

07 Mar 2022, 19:58

Type Values Removed Values Added
CWE NVD-CWE-Other
CPE cpe:2.3:a:emerson:openenterprise_scada_server:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 5.3
References (CONFIRM) https://www.cisa.gov/uscert/ics/advisories/icsa-20-140-02 - (CONFIRM) https://www.cisa.gov/uscert/ics/advisories/icsa-20-140-02 - Mitigation, Third Party Advisory, US Government Resource

24 Feb 2022, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-02-24 19:15

Updated : 2024-11-21 04:55


NVD link : CVE-2020-10632

Mitre link : CVE-2020-10632

CVE.ORG link : CVE-2020-10632


JSON object : View

Products Affected

emerson

  • openenterprise_scada_server
CWE
CWE-282

Improper Ownership Management

NVD-CWE-Other