CVE-2021-23193
- EPSS 0.68%
- Veröffentlicht 18.11.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 05:51:21
Improper privilege validation vulnerability in COM Interface of Gallagher Command Centre Server allows authenticated unprivileged operators to retrieve sensitive information from the Command Centre Server. This issue affects: Gallagher Command Centre...
CVE-2021-23167
- EPSS 0.39%
- Veröffentlicht 18.11.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 05:51:18
Improper certificate validation vulnerability in SMTP Client allows man-in-the-middle attack to retrieve sensitive information from the Command Centre Server. This issue affects: Gallagher Command Centre 8.50 versions prior to 8.50.2048 (MR3); 8.40 v...
CVE-2021-23146
- EPSS 0.85%
- Veröffentlicht 18.11.2021 18:15:07
- Zuletzt bearbeitet 21.11.2024 05:51:17
An Incomplete Comparison with Missing Factors vulnerability in the Gallagher Controller allows an attacker to bypass PIV verification. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions prior to 8.30.13...
CVE-2021-23230
- EPSS 0.66%
- Veröffentlicht 11.06.2021 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:24
A SQL Injection vulnerability in the OPCUA interface of Gallagher Command Centre allows a remote unprivileged Command Centre Operator to modify Command Centre databases undetected. This issue affects: Gallagher Command Centre 8.40 versions prior to 8...
CVE-2021-23211
- EPSS 0.11%
- Veröffentlicht 11.06.2021 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:23
Cleartext Storage of Sensitive Information in Memory vulnerability in Gallagher Command Centre Server allows Cloud end-to-end encryption key to be discoverable in server memory dumps. This issue affects: Gallagher Command Centre 8.40 versions prior t...
CVE-2021-23205
- EPSS 0.87%
- Veröffentlicht 11.06.2021 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:22
Improper Encoding or Escaping in Gallagher Command Centre Server allows a Command Centre Operator to alter the configuration of Controllers and other hardware items beyond their privilege. This issue affects: Gallagher Command Centre 8.40 versions pr...
CVE-2021-23204
- EPSS 0.7%
- Veröffentlicht 11.06.2021 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:22
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gallagher Command Centre Server allows OSDP key material to be exposed to Command Centre Operators. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1...
CVE-2021-23182
- EPSS 0.17%
- Veröffentlicht 11.06.2021 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:20
Cleartext Storage of Sensitive Information in Memory vulnerability in Gallagher Command Centre Server allows OSDP reader master keys to be discoverable in server memory dumps. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1...
CVE-2021-23140
- EPSS 0.85%
- Veröffentlicht 11.06.2021 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:51:16
Improper Authorization vulnerability in Gallagher Command Centre Server allows command line macros to be modified by an unauthorised Command Centre Operator. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 ve...
CVE-2021-23136
- EPSS 0.58%
- Veröffentlicht 11.06.2021 16:15:11
- Zuletzt bearbeitet 21.11.2024 05:51:16
Improper Authorization vulnerability in Gallagher Command Centre Server allows macro overrides to be performed by an unprivileged Command Centre Operator. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versi...