Gallagher Command Centre Server是新西兰Gallagher公司的一个用于对建筑物内基础设施进行监控、管理的管理系统。 Gallagher 存在安全漏洞,该漏洞源于移动客户端中对云证书链的不正确验证。该漏洞允许中间人攻击冒充合法的命令中心服务器。此问题影响:Gallagher Command Center Mobile Client for Android 8.60 8.60.065 之前的版本;8.50 版和之前的版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Gallagher | Command Centre Mobile Client for Android | unspecified ~ 8.50 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-23167 | 8.1 HIGH | Gallagher Command Centre Server信任管理问题漏洞 |
| CVE-2021-23193 | 8.1 HIGH | Gallagher Command Centre Server 信息泄露漏洞 |
| CVE-2021-23162 | 7.7 HIGH | Gallagher Command Centre Server 信任管理问题漏洞 |
| CVE-2021-23146 | 7.1 HIGH | Gallagher Command Centre 安全漏洞 |
| CVE-2021-23197 | 5.2 MEDIUM | Gallagher Command Centre Server 代码问题漏洞 |
No comments yet