Description
Uncaught Exception (CWE-248) in the Controller 6000 and Controller 7000 diagnostic web interface allows an authenticated and authorized operator to trigger a Controller restart by sending specific requests, resulting in a temporary denial of service. 
Version of Command Centre affected:





* 9.50 prior to vCR9.50.260616a (distributed in 9.50.1587(MR1))
* 9.40 prior to vCR9.40.260616a (distributed in 9.40.3130(MR3))
* 9.30 prior to vCR9.30.260616a (distributed in 9.30.3983(MR5))
* 9.20 prior to vCR9.20.260616a (distributed in 9.20.4349(MR7))
* all versions of 9.10 and prior.
Published: 2026-07-07
Score: 2.7 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An uncaught exception (CWE-248) in the diagnostic web interface of Gallagher Controller 6000 and Controller 7000 allows an authenticated operator to send particular requests that cause the controller to restart. The restart activity interrupts the diagnostic functions for a brief period, resulting in a temporary denial of service. No data disclosure or privilege escalation is possible from this flaw; the impact is confined to service availability for authorized users.

Affected Systems

The issue targets Gallagher Controller 7000 and Controller 6000 diagnostic web interfaces running Command Centre firmware versions 9.50 prior to vCR9.50.260616a, 9.40 prior to vCR9.40.260616a, 9.30 prior to vCR9.30.260616a, 9.20 prior to vCR9.20.260616a, and all releases of 9.10 and earlier.

Risk and Exploitability

The CVSS score of 2.7 indicates low severity, and the EPSS score of < 1 % reflects an extremely low probability of exploitation. The flaw is not listed in the CISA KEV catalog. Exploitation requires authenticated access with operator‑level privileges, making the attack vector internal. An attacker could trigger a restart repeatedly to induce availability disruption, but each reboot is transient and can be mitigated by redundancy. Overall, the risk to confidentiality, integrity, or persistent availability is limited to short‑term service interruption.

Generated by OpenCVE AI on July 26, 2026 at 19:38 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest Command Centre firmware upgrade, vCR9.50.260616a or later, to remove the uncaught exception.
  • Restrict access to the diagnostic web interface to trusted personnel and enforce stringent authentication and authorization controls.
  • Monitor controller uptime and restart logs, and configure redundant controllers or fail‑over mechanisms to maintain service availability.

Generated by OpenCVE AI on July 26, 2026 at 19:38 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 26 Jul 2026 20:00:00 +0000

Type Values Removed Values Added
Title Uncaught Exception Triggering Controller Restart in Gallagher Controller Diagnostics

Wed, 22 Jul 2026 12:45:00 +0000

Type Values Removed Values Added
Title Uncaught Exception Allows Operator to Trigger Controller Restart Resulting in Denial of Service

Thu, 16 Jul 2026 23:30:00 +0000

Type Values Removed Values Added
Title Uncaught Exception Allows Operator to Trigger Controller Restart Resulting in Denial of Service

Mon, 13 Jul 2026 22:00:00 +0000

Type Values Removed Values Added
Title Authenticated Operator Can Restart Gallagher Controller Causing Temporary Denial of Service

Sun, 12 Jul 2026 08:45:00 +0000

Type Values Removed Values Added
Title Authenticated Operator Can Restart Gallagher Controller Causing Temporary Denial of Service

Sat, 11 Jul 2026 05:15:00 +0000

Type Values Removed Values Added
Title Controller Diagnostic Interface Restart Denial of Service

Fri, 10 Jul 2026 02:15:00 +0000

Type Values Removed Values Added
Title Controller Diagnostic Interface Restart Denial of Service

Thu, 09 Jul 2026 11:45:00 +0000

Type Values Removed Values Added
Title Uncaught Exception in Diagnostic Web Interface Allows Controller Restart (Denial of Service)

Wed, 08 Jul 2026 16:45:00 +0000

Type Values Removed Values Added
Title Uncaught Exception in Diagnostic Web Interface Allows Controller Restart (Denial of Service)

Wed, 08 Jul 2026 09:45:00 +0000

Type Values Removed Values Added
Title Authenticated Operator Can Trigger Controller Restart Causing Temporary Denial of Service

Tue, 07 Jul 2026 17:15:00 +0000

Type Values Removed Values Added
Title Authenticated Operator Can Trigger Controller Restart Causing Temporary Denial of Service

Tue, 07 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 07 Jul 2026 05:00:00 +0000

Type Values Removed Values Added
Description Uncaught Exception (CWE-248) in the Controller 6000 and Controller 7000 diagnostic web interface allows an authenticated and authorized operator to trigger a Controller restart by sending specific requests, resulting in a temporary denial of service.  Version of Command Centre affected: * 9.50 prior to vCR9.50.260616a (distributed in 9.50.1587(MR1)) * 9.40 prior to vCR9.40.260616a (distributed in 9.40.3130(MR3)) * 9.30 prior to vCR9.30.260616a (distributed in 9.30.3983(MR5)) * 9.20 prior to vCR9.20.260616a (distributed in 9.20.4349(MR7)) * all versions of 9.10 and prior.
Weaknesses CWE-248
References
Metrics cvssV3_1

{'score': 2.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: Gallagher

Published:

Updated: 2026-07-07T13:36:54.335Z

Reserved: 2026-03-01T23:45:09.678Z

Link: CVE-2026-27844

cve-icon Vulnrichment

Updated: 2026-07-07T13:36:50.650Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-26T19:45:03Z

Weaknesses