Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-16096

Опубликовано: 15 сент. 2020
Источник: nvd
CVSS3: 9.9
CVSS3: 7.7
CVSS2: 4
EPSS Низкий

Описание

In Gallagher Command Centre versions 8.10 prior to 8.10.1134(MR4), 8.00 prior to 8.00.1161(MR5), 7.90 prior to 7.90.991(MR5), 7.80 prior to 7.80.960(MR2), 7.70 and earlier, any operator account has access to all data that would be replicated if the system were to be (or is) attached to a multi-server environment. This can include plain text credentials for DVR systems and card details used for physical access/alarm/perimeter components.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gallagher:command_centre:*:*:*:*:*:*:*:*
Версия от 7.80 (включая) до 7.80.960 (исключая)
cpe:2.3:a:gallagher:command_centre:*:*:*:*:*:*:*:*
Версия от 7.90 (включая) до 7.90.991 (исключая)
cpe:2.3:a:gallagher:command_centre:*:*:*:*:*:*:*:*
Версия от 8.00 (включая) до 8.00.1161 (исключая)
cpe:2.3:a:gallagher:command_centre:*:*:*:*:*:*:*:*
Версия от 8.10 (включая) до 8.10.1134 (исключая)
cpe:2.3:a:gallagher:command_centre:7.80.960:-:*:*:*:*:*:*
cpe:2.3:a:gallagher:command_centre:7.90.991:-:*:*:*:*:*:*
cpe:2.3:a:gallagher:command_centre:8.00.1161:-:*:*:*:*:*:*
cpe:2.3:a:gallagher:command_centre:8.10.1134:-:*:*:*:*:*:*

EPSS

Процентиль: 44%
0.0022
Низкий

9.9 Critical

CVSS3

7.7 High

CVSS3

4 Medium

CVSS2

Дефекты

CWE-285
NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

In Gallagher Command Centre versions 8.10 prior to 8.10.1134(MR4), 8.00 prior to 8.00.1161(MR5), 7.90 prior to 7.90.991(MR5), 7.80 prior to 7.80.960(MR2), 7.70 and earlier, any operator account has access to all data that would be replicated if the system were to be (or is) attached to a multi-server environment. This can include plain text credentials for DVR systems and card details used for physical access/alarm/perimeter components.

EPSS

Процентиль: 44%
0.0022
Низкий

9.9 Critical

CVSS3

7.7 High

CVSS3

4 Medium

CVSS2

Дефекты

CWE-285
NVD-CWE-noinfo