Vulnerability Description
Improper privilege validation vulnerability in COM Interface of Gallagher Command Centre Server allows authenticated unprivileged operators to retrieve sensitive information from the Command Centre Server. This issue affects: Gallagher Command Centre 8.50 versions prior to 8.50.2048 (MR3) ; 8.40 versions prior to 8.40.2063 (MR4); 8.30 versions prior to 8.30.1454 (MR4) ; 8.20 versions prior to 8.20.1291 (MR6); version 8.10 and prior versions.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gallagher | Command Centre | <= 8.10 |
Related Weaknesses (CWE)
References
- https://security.gallagher.com/Security-Advisories/CVE-2021-23193Vendor Advisory
- https://security.gallagher.com/Security-Advisories/CVE-2021-23193Vendor Advisory
FAQ
What is CVE-2021-23193?
CVE-2021-23193 is a vulnerability with a CVSS score of 8.1 (HIGH). Improper privilege validation vulnerability in COM Interface of Gallagher Command Centre Server allows authenticated unprivileged operators to retrieve sensitive information from the Command Centre Se...
How severe is CVE-2021-23193?
CVE-2021-23193 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-23193?
Check the references section above for vendor advisories and patch information. Affected products include: Gallagher Command Centre.