CVE-2023-46686: Gallagher Command Centre
High severity, CVSS 7.1. EPSS: 0.5% chance of exploitation in the next 30 days.
A reliance on untrusted inputs in a security decision could be exploited by a privileged user to configure the Gallagher Command Centre Diagnostics Service to use less secure communication protocols. This issue affects: Gallagher Diagnostics Service prior to v1.3.0 (distributed in 9.00.1507(MR1)).
Affected products
- Gallagher Command Centre: from 9.00, before 9.00.1507 (fixed in 9.00.1507); version 9.00.1507 only
Published 2023-12-18. Last modified 2026-06-17.