CVE-2021-21998
Summary
| CVE | CVE-2021-21998 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-06-23 12:15:00 UTC |
| Updated | 2021-06-30 00:30:00 UTC |
| Description | VMware Carbon Black App Control 8.0, 8.1, 8.5 prior to 8.5.8, and 8.6 prior to 8.6.2 has an authentication bypass. A malicious actor with network access to the VMware Carbon Black App Control management server might be able to obtain administrative access to the product without the need to authenticate. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 730401 VMware Carbon Black App Control Improper Authentication Vulnerability (VMSA-2021-0012)