Horizon Alert
Summary of the vulnerability and why it matters
This advisory concerns a critical security vulnerability in Gallagher Command Centre Server integrations with Morpho devices. The flaw could permit an authenticated user with limited permissions to enact significant alterations on local Morpho hardware. While the direct business impact is currently assessed as unlikely due to typical deployment environments, confirming the relevance and exposure within your specific infrastructure is the primary concern.
- Sensitive system information exposed to unauthorized access.
- High impact if an authenticated, low-privilege user exploits.
- Confirm relevance and potential exposure in your environment.
Attack Path
How an attacker could exploit the issue
An attacker could begin by gaining authenticated access to the Gallagher Command Centre Server with limited permissions. From there, they could target the Morpho integration, a component responsible for managing local Morpho devices. By exploiting this vulnerability, the attacker could potentially make unauthorized and critical modifications to these devices. The exact method for reaching and triggering this vulnerability is not detailed.
- Authenticated access required.
- Vulnerable Morpho integration.
- Unauthorized device control.
Live Threat
Current exploitation, exposure, and threat context
An authenticated operator with limited permissions could make critical changes to local Morpho devices through an integration with Gallagher Command Centre Server. This could affect the operational status and configuration of these devices.
- Morpho device configurations at risk.
- Changes made via authenticated operator access.
- Compromised device functionality and control.
Operational Fix
Recommended remediation, mitigation, and detection steps
System owners responsible for Gallagher Command Centre Server and its integrated Morpho devices must prioritize identifying all deployments and confirming their business criticality and network exposure. The initial action involves locating affected systems, assessing their reachability and importance, and then engaging the accountable owner to plan a risk-based remediation strategy.
- Ownership: Command Centre Server and Morpho integration owners.
- Verify first: System reachability and business criticality.
- Next action: Plan remediation with vendor coordination.