← Back

CVE-2020-7215

nvd nist
Published: Jan 20, 2020Modified: Jun 17, 2026

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

An issue was discovered in Gallagher Command Centre 7.x before 7.90.991(MR5), 8.00 before 8.00.1161(MR5), and 8.10 before 8.10.1134(MR4). External system configuration data (used for third party integrations such as DVR systems) were logged in the Command Centre event trail. Any authenticated operator with the 'view events' privilege could see the full configuration, including cleartext usernames and passwords, under the event details of a Modified DVR System event.

Affected (7)

1 product
Command Centre
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
Gallagher
Before 7.80
From 7.90 to 7.90.991
From 8.00 to 8.00.1161
From 8.10 to 8.10.1134
Version 7.90.991
Version 8.00.1161
Version 8.10.1134

References (2)

Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.