Gallagher Group Command Centre是新西兰Gallagher Group公司的一款用于Gallagher门禁系统的集中控制工具。 Gallagher Group Command Centre 存在SQL注入漏洞,该漏洞允许远程攻击者可利用该漏洞通过“编辑企业数据接口”的特权,在将EDI配置为从第三方数据库导入数据的情况下,对该数据库执行任意SQL。以下产品及版本受到影响: Gallagher Command Centre 8.30 versions prior to 8.30.1
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Gallagher | Command Centre | unspecified ~ 7.90 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-16103 | 8.8 HIGH | Gallagher Group Command Centre 代码问题漏洞 |
| CVE-2020-16102 | 7.1 HIGH | Gallagher Group Command Centre 访问控制错误漏洞 |
No comments yet