← Back

CVE-2024-41724

nvd nist
Published: Mar 10, 2025Modified: Jun 17, 2026Deferred

JSON object

Loading...
8.7
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N
Exploitability: 2.2 / Impact: 5.8
Source: disclosures@gallagher.com (Secondary)

Description

Improper Certificate Validation (CWE-295) in the Gallagher Command Centre SALTO integration allowed an attacker to spoof the SALTO server. This issue affects all versions of Gallagher Command Centre prior to 9.20.1043.

Timeline

No history available yet.