Improper Certificate Validation (CWE-295) in the Gallagher Milestone Integration Plugin (MIP) permits unauthenticated messages (e.g. alarm events) to be sent to the Plugin.
This issue effects Gallagher MIPS Plugin v4.0 prior to v4.0.32, all versions of v3.0 and prior.
Metrics
Affected Vendors & Products
References
History
Mon, 10 Mar 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 10 Mar 2025 03:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Certificate Validation (CWE-295) in the Gallagher Milestone Integration Plugin (MIP) permits unauthenticated messages (e.g. alarm events) to be sent to the Plugin. This issue effects Gallagher MIPS Plugin v4.0 prior to v4.0.32, all versions of v3.0 and prior. | |
Weaknesses | CWE-295 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Gallagher
Published: 2025-03-10T02:44:03.188Z
Updated: 2025-03-10T17:16:47.074Z
Reserved: 2024-08-28T02:46:11.149Z
Link: CVE-2024-43107

Updated: 2025-03-10T17:16:12.530Z

Status : Received
Published: 2025-03-10T03:15:26.750
Modified: 2025-03-10T03:15:26.750
Link: CVE-2024-43107

No data.