CVE-2020-10632: ICSA-20-140-02 Emerson OpenEnterprise
Inadequate folder security permissions in Emerson OpenEnterprise versions through 3.3.4 may allow modification of important configuration files, which could cause the system to fail or behave in an unpredictable manner.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID of this security issue?
The vulnerability ID of this security issue is CVE-2020-10632.
What is the severity of CVE-2020-10632?
The severity of CVE-2020-10632 is high with a CVSS score of 5.3.
Which software versions are affected by CVE-2020-10632?
Emerson OpenEnterprise SCADA Server versions up to and including 3.3.4 are affected by CVE-2020-10632.
What is the impact of CVE-2020-10632?
CVE-2020-10632 can allow modification of important configuration files, leading to system failure or unpredictable behavior.
Is there a fix available for CVE-2020-10632?
At the moment, there is no known fix or patch available for CVE-2020-10632. It is recommended to follow the recommendations provided by the vendor and avoid exposing the affected system to untrusted networks.