First published: Fri Jun 11 2021(Updated: )
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gallagher Command Centre Server allows OSDP key material to be exposed to Command Centre Operators. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions prior to 8.30.1359 (MR3).
Credit: disclosures@gallagher.com
Affected Software | Affected Version | How to fix |
---|---|---|
Gallagher Command Centre | >=8.30<8.30.1359 | |
Gallagher Command Centre | >=8.40<8.40.1888 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-23204 has been classified as a vulnerability that leads to exposure of sensitive information.
To fix CVE-2021-23204, upgrade to Gallagher Command Centre versions 8.40.1888 or 8.30.1359 or later.
CVE-2021-23204 affects Gallagher Command Centre versions prior to 8.40.1888 for 8.40 and prior to 8.30.1359 for 8.30.
Command Centre Operators using affected versions of Gallagher Command Centre are at risk due to CVE-2021-23204.
CVE-2021-23204 potentially exposes OSDP key material to unauthorized actors.