CVE-2019-10996: Redlion Crimson

High severity, CVSS 7.8. EPSS: 1% chance of exploitation in the next 30 days.

Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, allow multiple vulnerabilities to be exploited when a valid user opens a specially crafted, malicious input file that can reference memory after it has been freed.

Affected products

  • Redlion Crimson: up to and including 3.0; from 3.1, before 3112.00 (fixed in 3112.00)

Published 2019-09-23. Last modified 2026-06-17.