CVE-2020-4008: Low severity carbon black cloud windows sensor vulnerability
The installer of the macOS Sensor for VMware Carbon Black Cloud (prior to 3.5.1) handles certain files in an insecure way. A malicious actor who has local access to the endpoint on which a macOS sensor is going to be installed, may overwrite a limited number of files with output from the sensor installation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-4008?
CVE-2020-4008 is considered a medium-severity vulnerability.
How do I fix CVE-2020-4008?
To fix CVE-2020-4008, upgrade the macOS Sensor for VMware Carbon Black Cloud to version 3.5.1 or later.
Who is affected by CVE-2020-4008?
CVE-2020-4008 affects users of VMware Carbon Black Cloud versions prior to 3.5.1 installed on macOS.
What type of vulnerability is CVE-2020-4008?
CVE-2020-4008 is a file overwrite vulnerability due to insecure handling of files during the installation of the macOS Sensor.
Can CVE-2020-4008 be exploited remotely?
CVE-2020-4008 cannot be exploited remotely; it requires local access to the endpoint.