Cleartext Storage Vulnerability in Gallagher Command Centre Server
CVE-2025-48428
What is CVE-2025-48428?
The vulnerability in Gallagher Command Centre Server stems from the cleartext storage of sensitive information, enabling an authenticated user to access and export critical signing keys. This flaw can be exploited to facilitate the deployment of compromised or counterfeit devices within the affected systems. Affected versions include Command Centre Server 9.20 before vEL9.20.2819, 9.10 before vEL9.10.3672, and all predecessors, emphasizing the necessity for upgrades to safeguard sensitive operational data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Command Centre Server 0 <= 8.90
Command Centre Server 9.20 < 9.20.2819 (MR4)
Command Centre Server 9.10 < 9.10.3672 (MR7)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
