Gallagher Command Centre Server是新西兰Gallagher公司的一个用于对建筑物内基础设施进行监控、管理的管理系统。 Gallagher 存在安全漏洞,该漏洞源于 SMTP 客户端中不正确的证书验证,该漏洞允许中间人攻击从命令中心服务器检索敏感信息。此问题影响: 8.50.2048 (MR3) 之前的 Gallagher Command Center 8.50 版本;8.40.2063 (MR4) 之前的 8.40 版本;8.30.1454 (MR4) 之前的 8.30 版本
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Gallagher | Command Centre | unspecified ~ 8.20 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-23155 | 9.0 CRITICAL | Gallagher Command Centre Server 信任管理问题漏洞 |
| CVE-2021-23193 | 8.1 HIGH | Gallagher Command Centre Server 信息泄露漏洞 |
| CVE-2021-23162 | 7.7 HIGH | Gallagher Command Centre Server 信任管理问题漏洞 |
| CVE-2021-23146 | 7.1 HIGH | Gallagher Command Centre 安全漏洞 |
| CVE-2021-23197 | 5.2 MEDIUM | Gallagher Command Centre Server 代码问题漏洞 |
No comments yet