CVE-2020-10632

Published Feb 24, 2022

Last updated 6 months ago

Overview

Description
Inadequate folder security permissions in Emerson OpenEnterprise versions through 3.3.4 may allow modification of important configuration files, which could cause the system to fail or behave in an unpredictable manner.
Source
ics-cert@hq.dhs.gov
NVD status
Modified

Risk scores

CVSS 3.1

Type
Primary
Base score
5.3
Impact score
1.4
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Severity
MEDIUM

CVSS 2.0

Type
Primary
Base score
5
Impact score
2.9
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:N/I:P/A:N

Weaknesses

ics-cert@hq.dhs.gov
CWE-282
nvd@nist.gov
NVD-CWE-Other

Social media

Hype score
Not currently trending

Configurations