CVE Vulnerabilities

CVE-2019-19801

Published: Jan 17, 2020 | Modified: Aug 24, 2020
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

In Gallagher Command Centre Server versions of v8.10 prior to v8.10.1134(MR4), v8.00 prior to v8.00.1161(MR5), v7.90 prior to v7.90.991(MR5), v7.80 prior to v7.80.960(MR2) and v7.70 or earlier, an unprivileged but authenticated user is able to perform a backup of the Command Centre databases.

Affected Software

Name Vendor Start Version End Version
Command_centre Gallagher * 7.70 (excluding)
Command_centre Gallagher 7.80 (including) 7.80.960 (excluding)
Command_centre Gallagher 7.90 (including) 7.90.991 (excluding)
Command_centre Gallagher 8.00 (including) 8.00.1161 (excluding)
Command_centre Gallagher 8.10 (including) 8.10.1134 (excluding)
Command_centre Gallagher 7.80.960 (including) 7.80.960 (including)
Command_centre Gallagher 7.90.991 (including) 7.90.991 (including)
Command_centre Gallagher 8.00.1161 (including) 8.00.1161 (including)
Command_centre Gallagher 8.10.1134 (including) 8.10.1134 (including)

References