CVE Explorer
CVE-2026-20757
Improper Locking vulnerability (CWE-667) in Gallagher Morpho integration allows a privileged operator to cause a limited denial-of-service in the Command Centre Server.
This issue affects Command Centre Server:
9.40 prior to vEL9.40.1976(MR1), 9.30 prior to vEL9.30.3382 (MR4), 9.20 prior to vEL9.20.3783 (MR6), 9.10 prior to vEL9.10.4647 (MR9), all versions of 9.00 and prior.
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"defaultStatus":"affected","product":"Command Centre Server","vendor":"Gallagher","versions":[{"lessThanOrEqual":"9.00","status":"affected","version":"0","versionType":"custom"},{"lessThan":"9.40.1976(MR1)","status":"affected","version":"9.40","versionType":"custom"},{"lessThan":"9.30.3382 (MR4)","status":"affected","version":"9.30","versionType":"custom"},{"lessThan":"9.20.3783 (MR6)","status":"affected","version":"9.20","versionType":"custom"},{"lessThan":"9.10.4647 (MR9)","status":"affected","version":"9.10","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:4810631318e4712fdb1231f22135b07c2a7cccf7cc539ab0029f5b3f78a0c9f7 · sha256:05908bd22f3361f2… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"HIGH","attackVector":"LOCAL","availabilityImpact":"LOW","baseScore":2.5,"baseSeverity":"LOW","confidentialityImpact":"NONE","integrityImpact":"NONE","privilegesRequired":"LOW","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","version":"3.1"},"metric_type":"cvssV3_1"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:4810631318e4712fdb1231f22135b07c2a7cccf7cc539ab0029f5b3f78a0c9f7 · sha256:05908bd22f3361f2… · /containers/cna/metrics/0/cvssV3_1
CWE assertions
1 source assertion{"cweId":"CWE-667","description":"CWE-667 Improper Locking","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:4810631318e4712fdb1231f22135b07c2a7cccf7cc539ab0029f5b3f78a0c9f7 · sha256:05908bd22f3361f2… · /containers/cna/problemTypes/0/descriptions/0
Source references
1 source assertion{"url":"https://security.gallagher.com/en-NZ/Security-Advisories/CVE-2026-20757"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:4810631318e4712fdb1231f22135b07c2a7cccf7cc539ab0029f5b3f78a0c9f7 · sha256:05908bd22f3361f2… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.