CVE-2021-23182

MEDIUM

Gallagher Command Centre <8.40.1888 - Info Disclosure

Title source: llm
STIX 2.1

Description

Cleartext Storage of Sensitive Information in Memory vulnerability in Gallagher Command Centre Server allows OSDP reader master keys to be discoverable in server memory dumps. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); All versions of 8.30.

References (1)

Core 1
Core References

Scores

CVSS v3 6.0
EPSS 0.0017
EPSS Percentile 6.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-316 CWE-312
Status published
Products (1)
gallagher/command_centre 8.30 - 8.40.1888
Published Jun 11, 2021
Tracked Since Feb 18, 2026