An Incomplete Comparison with Missing Factors vulnerability in the Gallagher Controller allows an attacker to bypass PIV verification. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions prior to 8.30.1359 (MR3); 8.20 versions prior to 8.20.1259 (MR5); 8.10 versions prior to 8.10.1284 (MR7); version 8.00 and prior versions.
The product performs a comparison between entities that must consider multiple factors or characteristics of each entity, but the comparison does not include one or more of these factors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Command_centre | Gallagher | * | 8.00 (including) |
Command_centre | Gallagher | 8.10 (including) | 8.10.1284 (excluding) |
Command_centre | Gallagher | 8.20 (including) | 8.20.1259 (excluding) |
Command_centre | Gallagher | 8.30 (including) | 8.30.1359 (excluding) |
Command_centre | Gallagher | 8.40 (including) | 8.40.1888 (excluding) |