CVE-2023-46686

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/12/2023
Last modified:
28/12/2023

Description

<br /> A reliance on untrusted inputs in a security decision could be exploited by a privileged user to configure the Gallagher Command Centre Diagnostics Service to use less secure communication protocols. <br /> <br /> This issue affects: Gallagher Diagnostics Service prior to v1.3.0 (distributed in 9.00.1507(MR1)).<br /> <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gallagher:command_centre:*:*:*:*:*:*:*:* 9.00 (including) 9.00.1507 (excluding)
cpe:2.3:a:gallagher:command_centre:9.00.1507:-:*:*:*:*:*:*


References to Advisories, Solutions, and Tools