First published: Wed Jun 23 2021(Updated: )
VMware Carbon Black App Control 8.0, 8.1, 8.5 prior to 8.5.8, and 8.6 prior to 8.6.2 has an authentication bypass. A malicious actor with network access to the VMware Carbon Black App Control management server might be able to obtain administrative access to the product without the need to authenticate.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Carbon Black App Control | >=8.5<8.5.8 | |
VMware Carbon Black App Control | >=8.6<8.6.2 | |
VMware Carbon Black App Control | =8.0 | |
VMware Carbon Black App Control | =8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.