5.5

CVE-2019-19801

In Gallagher Command Centre Server versions of v8.10 prior to v8.10.1134(MR4), v8.00 prior to v8.00.1161(MR5), v7.90 prior to v7.90.991(MR5), v7.80 prior to v7.80.960(MR2) and v7.70 or earlier, an unprivileged but authenticated user is able to perform a backup of the Command Centre databases.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GallagherCommand Centre Version < 7.70
GallagherCommand Centre Version >= 7.80 < 7.80.960
GallagherCommand Centre Version >= 7.90 < 7.90.991
GallagherCommand Centre Version >= 8.00 < 8.00.1161
GallagherCommand Centre Version >= 8.10 < 8.10.1134
GallagherCommand Centre Version7.80.960 Update-
GallagherCommand Centre Version7.90.991 Update-
GallagherCommand Centre Version8.00.1161 Update-
GallagherCommand Centre Version8.10.1134 Update-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.28% 0.196
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://security.gallagher.com/cve-2019-19801
Vendor Advisory