Gallagher Command Centre Improper Certificate Validation Vulnerability in SALTO Integration

Vulnerability

A vulnerability exists in Gallagher Command Centre's SALTO integration, all versions prior to 9.20.1043, due to improper certificate validation. This flaw allows an attacker to spoof the SALTO server. The issue impacts sites using the Gallagher Command Centre SALTO integration before the specified version.

Impact

Exploitation of this vulnerability could lead to unauthorized spoofing of the SALTO server, potentially allowing attackers to manipulate or deceive systems or users interacting with the SALTO integration.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
1.3
exploitability
7.0
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.