VMware Carbon Black App Control 8.0, 8.1, 8.5 prior to 8.5.8, and 8.6 prior to 8.6.2 has an authentication bypass. A malicious actor with network access to the VMware Carbon Black App Control management server might be able to obtain administrative access to the product without the need to authenticate.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: vmware

Published: 2021-06-23T11:10:25

Updated: 2021-06-23T11:10:25

Reserved: 2021-01-04T00:00:00


Link: CVE-2021-21998

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-06-23T12:15:07.857

Modified: 2021-06-30T00:30:04.167


Link: CVE-2021-21998

JSON object: View

cve-icon Redhat Information

No data.

CWE