← Back to browse · API

CVE-2021-23140

Severity
CRITICAL
CVSS
9.9
EPSS
0.00853
Risk score
39.9
CISA KEV
No
PoC
No
Published
2021-06-11
Modified
2024-08-03
First seen
2026-08-08
Aliases
EUVD-2021-10257, GHSA-WH2J-WJ4X-J48F
Products
Gallagher:Command Centre 8.20 <8.20.1259 (MR5), Gallagher:Command Centre 8.30 <8.30.1359 (MR3), Gallagher:Command Centre 8.40 <8.40.1888 (MR3), Gallagher:Command Centre unspecified ≤8.10
Sources
euvd EUVD-2021-10257

Description

Improper Authorization vulnerability in Gallagher Command Centre Server allows command line macros to be modified by an unauthorised Command Centre Operator. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions prior to 8.30.1359 (MR3); 8.20 versions prior to 8.20.1259 (MR5); version 8.10 and prior versions.

References