This issue affects Command Centre Server: 9.30.1874 (MR1), 9.20.2337 (MR3), 9.10.3194 (MR6).
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 23 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Oct 2025 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gallagher
Gallagher command Centre |
|
| Vendors & Products |
Gallagher
Gallagher command Centre |
Thu, 23 Oct 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Exposure of Private Personal Information to an Unauthorized Actor (CWE-359) in the Command Centre Server allows a privileged Operator to view limited personal data about a Cardholder they would not normally have permissions to view. This issue affects Command Centre Server: 9.30.1874 (MR1), 9.20.2337 (MR3), 9.10.3194 (MR6). | |
| Weaknesses | CWE-359 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Gallagher
Published:
Updated: 2025-10-23T14:35:14.250Z
Reserved: 2025-06-17T02:18:59.266Z
Link: CVE-2025-35981
Updated: 2025-10-23T13:26:14.867Z
Status : Deferred
Published: 2025-10-23T04:16:39.947
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-35981
No data.
OpenCVE Enrichment
Updated: 2025-10-23T09:58:40Z