← Vulnerability feed

Vulnerability record · CVE-2026-25193 · published 25 May 2026

CVE-2026-25193: Gallagher active directory sync sensitive information in log file vulnerability

Gallagher · Active Directory Sync

Insertion of Sensitive Information into Log File (CWE-532) in some Command Centre Service installers could lead to Service Account credentials exposure.  Mitigating Factor: Only sites that install Command Centre Services with a custom Service Account (not the default Network Service account) are potentially impacted. Mitigation: For sites concerned about exposure, the recommended action is to change the Service Account password. They can also delete any installer log files, usually found in %programdata%\Gallagher\Command Centre.

8.6 CVSS 3.1 High EPSS 0.14% · top 97.5% CWE-532 · Sensitive information in log file
8.6CVSS 3.1 base score
0.14%EPSS exploitation probability, 30 days
NoNot in CISA KEV
15Affected product versions listed by NVD
1References
17 Aug 2026Last modified by NVD

Description

Insertion of Sensitive Information into Log File (CWE-532) in some Command Centre Service installers could lead to Service Account credentials exposure.  Mitigating Factor: Only sites that install Command Centre Services with a custom Service Account (not the default Network Service account) are potentially impacted. Mitigation: For sites concerned about exposure, the recommended action is to change the Service Account password. They can also delete any installer log files, usually found in %programdata%\Gallagher\Command Centre.

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Affected products

15 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2026-25193 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2020-16098Gallagher command centre improper authentication vulnerabilityIt is possible to enumerate access card credentials via an unauthenticated network connection to the server in versions of Command Centre v8.20 prior…EPSS 1.1%9.8CVE-2019-15294Gallagher command centre sensitive information in log file vulnerabilityAn issue was discovered in Gallagher Command Centre 8.10 before 8.10.1092(MR2). Upon an upgrade, if a custom service account is in use and the visito…EPSS 1.2%8.8CVE-2021-23140Gallagher command centre improper authorization vulnerabilityImproper Authorization vulnerability in Gallagher Command Centre Server allows command line macros to be modified by an unauthorised Command Centre O…EPSS 0.85%8.8CVE-2020-16103Gallagher command centre type confusion vulnerabilityType confusion in Gallagher Command Centre Server allows a remote attacker to crash the server or possibly cause remote code execution. This issue af…EPSS 2.3%8.2CVE-2020-16102Gallagher command centre improper authentication vulnerabilityImproper Authentication vulnerability in Gallagher Command Centre Server allows an unauthenticated remote attacker to create items with invalid confi…EPSS 1.0%8.1CVE-2023-23570Gallagher command centre vulnerabilityClient-Side enforcement of Server-Side security for the Command Centre server could be bypassed and lead to invalid configuration with undefined beha…EPSS 0.67%8.1CVE-2021-23205Gallagher command centre vulnerabilityImproper Encoding or Escaping in Gallagher Command Centre Server allows a Command Centre Operator to alter the configuration of Controllers and other…EPSS 0.87%7.8CVE-2021-23197Gallagher command centre unquoted search path vulnerabilityUnquoted service path vulnerability in the Gallagher Controller Service allows an unprivileged user to execute arbitrary code as the account that run…EPSS 0.27%

Source: NIST National Vulnerability Database (record CVE-2026-25193), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.