CVE-2020-16102
Summary
| CVE | CVE-2020-16102 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-12-14 20:15:00 UTC |
| Updated | 2021-11-18 16:33:00 UTC |
| Description | Improper Authentication vulnerability in Gallagher Command Centre Server allows an unauthenticated remote attacker to create items with invalid configuration, potentially causing the server to crash and fail to restart. This issue affects: Gallagher Command Centre 8.30 versions prior to 8.30.1299(MR2); 8.20 versions prior to 8.20.1218(MR4); 8.10 versions prior to 8.10.1253(MR6); 8.00 versions prior to 8.00.1252(MR7); version 7.90 and prior versions. |
Risk And Classification
Problem Types: CWE-306
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gallagher | Command Centre | All | All | All | All |
| Application | Gallagher | Command Centre | 8.00.1252 | - | All | All |
| Application | Gallagher | Command Centre | 8.00.1252 | maintenance_release7 | All | All |
| Application | Gallagher | Command Centre | 8.10.1253 | - | All | All |
| Application | Gallagher | Command Centre | 8.10.1253 | maintenance_release6 | All | All |
| Application | Gallagher | Command Centre | 8.20.1218 | - | All | All |
| Application | Gallagher | Command Centre | 8.20.1218 | maintenance_release4 | All | All |
| Application | Gallagher | Command Centre | 8.30.1299 | - | All | All |
| Application | Gallagher | Command Centre | 8.30.1299 | maintenance_release2 | All | All |
| Application | Gallagher | Command Centre | All | All | All | All |
| Application | Gallagher | Command Centre | 8.00.1252 | - | All | All |
| Application | Gallagher | Command Centre | 8.00.1252 | maintenance_release7 | All | All |
| Application | Gallagher | Command Centre | 8.10.1253 | - | All | All |
| Application | Gallagher | Command Centre | 8.10.1253 | maintenance_release6 | All | All |
| Application | Gallagher | Command Centre | 8.20.1218 | - | All | All |
| Application | Gallagher | Command Centre | 8.20.1218 | maintenance_release4 | All | All |
| Application | Gallagher | Command Centre | 8.30.1299 | - | All | All |
| Application | Gallagher | Command Centre | 8.30.1299 | maintenance_release2 | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE-2020-16102 | MISC | security.gallagher.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.