CVE-2021-23193
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Improper privilege validation vulnerability in COM Interface of Gallagher Command Centre Server allows authenticated unprivileged operators to retrieve sensitive information from the Command Centre Server. This issue affects: Gallagher Command Centre 8.50 versions prior to 8.50.2048 (MR3) ; 8.40 versions prior to 8.40.2063 (MR4); 8.30 versions prior to 8.30.1454 (MR4) ; 8.20 versions prior to 8.20.1291 (MR6); version 8.10 and prior versions.
Una vulnerabilidad de comprobación de privilegios inapropiada en la interfaz COM del el servicio de controlador de Gallagher permite a operadores no privilegiados autenticados recuperar información confidencial del Servidor del Centro de Comando. Este problema afecta a: Las versiones de Gallagher Command Centre 8.50 anteriores a 8.50.2048 (MR3) ; las versiones 8.40 anteriores a 8.40.2063 (MR4); las versiones 8.30 anteriores a 8.30.1454 (MR4) ; las versiones 8.20 anteriores a 8.20.1291 (MR6); la versión 8.10 y anteriores.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-26 CVE Reserved
- 2021-11-18 CVE Published
- 2023-06-11 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
- CWE-269: Improper Privilege Management
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://security.gallagher.com/Security-Advisories/CVE-2021-23193 | 2022-04-26 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Gallagher Search vendor "Gallagher" | Command Centre Search vendor "Gallagher" for product "Command Centre" | <= 8.10 Search vendor "Gallagher" for product "Command Centre" and version " <= 8.10" | - |
Affected
| ||||||
Gallagher Search vendor "Gallagher" | Command Centre Search vendor "Gallagher" for product "Command Centre" | >= 8.20 < 8.20.1291 Search vendor "Gallagher" for product "Command Centre" and version " >= 8.20 < 8.20.1291" | - |
Affected
| ||||||
Gallagher Search vendor "Gallagher" | Command Centre Search vendor "Gallagher" for product "Command Centre" | >= 8.30 < 8.30.1454 Search vendor "Gallagher" for product "Command Centre" and version " >= 8.30 < 8.30.1454" | - |
Affected
| ||||||
Gallagher Search vendor "Gallagher" | Command Centre Search vendor "Gallagher" for product "Command Centre" | >= 8.40 < 8.40.2063 Search vendor "Gallagher" for product "Command Centre" and version " >= 8.40 < 8.40.2063" | - |
Affected
| ||||||
Gallagher Search vendor "Gallagher" | Command Centre Search vendor "Gallagher" for product "Command Centre" | >= 8.50 < 8.50.2048 Search vendor "Gallagher" for product "Command Centre" and version " >= 8.50 < 8.50.2048" | - |
Affected
|