CVE-2019-12492

MEDIUM

Gallagher Command Centre < 7.80.939 - Incorrect Authorization

Title source: rule
STIX 2.1

Description

Gallagher Command Centre before 7.80.939, 7.90.x before 7.90.961, and 8.x before 8.00.1128 allows arbitrary event creation and information disclosure via the FT Command Centre Service and FT Controller Service services.

References (2)

Core 2
Core References
Mitigation, Vendor Advisory x_refsource_confirm
https://security.gallagher.com/CVE-2019-12492
Vendor Advisory x_refsource_confirm
https://security.gallagher.com/security-advisories

Scores

CVSS v3 6.5
EPSS 0.0074
EPSS Percentile 50.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N

Details

CWE
CWE-863
Status published
Products (1)
gallagher/command_centre < 7.80.939
Published Jun 06, 2019
Tracked Since Feb 18, 2026