CVE Published: 11/07/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: Gallagher |
Vendor: Gallagher |
Product: Command Centre Status : PUBLISHED
CVE-2024-23194 Description
Improper output Neutralization for Logs (CWE-117) in the Command Centre API Diagnostics Endpoint could allow an attacker limited ability to modify Command Centre log files.
This issue affects: Gallagher Command Centre v9.10 prior to vEL9.10.1268 (MR1).
Metrics
CVSS Version: 3.1 |
Base Score: 3.3 LOW Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N