It is possible for an unauthenticated remote DCOM websocket connection to crash the Command Centre service due to an out-of-bounds buffer access. Affected versions are v8.20 prior to v8.20.1166(MR3), v8.10 prior to v8.10.1211(MR5), v8.00 prior to v8.00.1228(MR6), all versions of 7.90 and earlier.
References
Link | Resource |
---|---|
https://security.gallagher.com/Security-Advisories/CVE-2020-16101 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-09-15 07:15
Updated : 2020-09-24 10:27
NVD link : CVE-2020-16101
Mitre link : CVE-2020-16101
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
gallagher
- command_centre