CVE-2023-46686
18.12.2023, 22:15
A reliance on untrusted inputs in a security decision could be exploited by a privilegeduser to configure the Gallagher Command Centre Diagnostics Service to use less secure communication protocols. This issue affects: Gallagher Diagnostics Service prior to v1.3.0 (distributed in 9.00.1507(MR1)).Enginsight
Vendor | Product | Version |
---|---|---|
gallagher | command_centre | 9.00 ≤ 𝑥 < 9.00.1507 |
gallagher | command_centre | 9.00.1507 |
𝑥
= Vulnerable software versions