Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
It is possible to enumerate access card credentials via an unauthenticated network connection to the server in versions of Command Centre v8.20 prior to v8.20.1166(MR3), versions of 8.10 prior to v8.10.1211(MR5), versions of 8.00 prior to v8.00.1228(MR6), all versions of 7.90 and earlier. These credentials can then be used to encode low security cards to be used by the system where insecure card technologies are supported.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
认证机制不恰当
Vulnerability Title
Gallagher Group Command Centre 访问控制错误漏洞
Vulnerability Description
Gallagher Group Command Centre是新西兰Gallagher Group公司的一款用于Gallagher门禁系统的集中控制工具。 Gallagher Group Command Centre 存在访问控制错误漏洞,攻击者可利用该漏洞连接至服务器。以下是受到影响的产品及版本:v8.20 版本到 v8.20.1166(MR3)版本, v8.10版本到v8.10.1211(MR5)版本, v8.00 版本到 v8.00.1228(MR6)版本, 7.90全部版本,和之前所有版本。
CVSS Information
N/A
Vulnerability Type
N/A