CVE-2021-23204

HIGH

Gallagher Command Centre <8.40.1888-8.30.1359 - Info Disclosure

Title source: llm
STIX 2.1

Description

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gallagher Command Centre Server allows OSDP key material to be exposed to Command Centre Operators. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions prior to 8.30.1359 (MR3).

References (1)

Core 1
Core References

Scores

CVSS v3 8.1
EPSS 0.0070
EPSS Percentile 48.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-200 CWE-862
Status published
Products (1)
gallagher/command_centre 8.30 - 8.30.1359
Published Jun 11, 2021
Tracked Since Feb 18, 2026