CNNVD-202507-1371 Information

CNNVD ID

CNNVD-202507-1371

CVE-2025-46406

  • CNNVD Published: 2025-07-10

Description (Chinese)

Gallagher Command Centre Server是新西兰Gallagher公司的一个用于对建筑物内基础设施进行监控、管理的管理系统。 Gallagher Command Centre Server存在安全漏洞,该漏洞源于权限上下文切换错误,可能导致跨部门权限提升。以下版本受到影响:9.30之前版本、9.20之前版本、9.10之前版本、9.00之前版本和8.90及之前版本。

Description (English)

Gallagher Command Centre Server is a management system for the control and management of building infrastructure at Gallagher, New Zealand. There is a security loophole in Gallagher Command Centre Server, which stems from an error in the context of authority, which may lead to an increase in cross-sectoral authority. The following versions were affected: pre 9.30, pre 9.20, pre 9.10, pre 9.00 and pre 8.90.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Gallagher

Published

2025-07-10

Last Modified

2026-02-24

References

https://security.gallagher.com/en-NZ/Security-Advisories/CVE-2025-46406 https://nvd.nist.gov/vuln/detail/CVE-2025-46406

Patch

https://security.gallagher.com/en-NZ/Security-Advisories/CVE-2025-46406

Share on: