Discover the critical vulnerability in Command Centre by Gallagher (CVE-2020-16098) allowing unauthorized access to enumerate access card credentials. Learn about the impact, affected versions, and mitigation steps.
Command Centre by Gallagher is affected by a critical vulnerability that allows attackers to enumerate access card credentials, potentially leading to unauthorized access.
Understanding CVE-2020-16098
Command Centre versions prior to 8.20.1166(MR3), 8.10.1211(MR5), and 8.00.1228(MR6) are impacted, along with all versions of 7.90 and earlier.
What is CVE-2020-16098?
The vulnerability in Command Centre allows unauthorized access to the server to enumerate access card credentials, which can then be used to encode low-security cards for system access.
The Impact of CVE-2020-16098
Technical Details of CVE-2020-16098
Command Centre vulnerability details:
The flaw allows attackers to enumerate access card credentials via an unauthenticated network connection to the server.
Attackers can exploit this vulnerability through an unauthenticated network connection to the server.
Mitigation and Prevention
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates