CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Gallagher 1Controller 6000 Firmware Jun 17, 2026 Dec 18, 2023 N/A· v4 4.6 MEDIUM· v3 N/A· v2 Sensitive information uncleared after debug/power state transition in the Controller 6000 could be abused by an attacker with knowledge of the Controller's default diagnostic password and physical access to the Controll...Show more |
A format string issue in the Controller 6000's optional diagnostic web interface can be used to write/read from memory, and in some instances crash the Controller 6000 leading to a Denial of Service. This issue affec...Show more |
1Gallagher 2Command Centre Controller 6000 FirmwareJun 17, 2026 Dec 18, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Improper input validation of a large HTTP request in the Controller 6000 and Controller 7000 optional diagnostic web interface (Port 80) can be used to perform a Denial of Service of the diagnostic web interface. This...Show more |
1Gallagher 1Controller 6000 Firmware Jun 17, 2026 Jun 1, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Controller 6000 is vulnerable to a buffer overflow via the Controller diagnostic web interface upload feature. This issue affects Controller 6000: before vCR8.80.230201a, before vCR8.70.230201a, before vCR8.60.2302...Show more |
1Gallagher 1Controller 6000 Firmware Jun 17, 2026 Jul 6, 2022 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Gallagher Controller 6000 is vulnerable to a Denial of Service attack via conflicting ARP packets with a duplicate IP address. This issue affects: Gallagher Gallagher Controller 6000 vCR8.60 versions prior to 220303a; vC...Show more |