QID 730738
Date Published: 2023-02-22
QID 730738: VMware Carbon Black App Control Injection Vulnerability (VMSA-2023-0004)
An injection vulnerability has been reported in VMware Carbon Black App Control running on Windows.
Affected Versions:
App Control 8.9.x prior to version 8.9.4
App Control 8.8.x prior to version 8.8.6
App Control 8.7.x prior to version 8.7.8
Note: This issue only affects VMware Carbon Black App Control installation in Windows, hence the QID is kept as potential.
QID Detection Logic
This QID sends a GET request to login.php and checks for vulnerable version of Carbon Black Server.
A malicious actor with privileged access to the App Control administration console may be able to use specially crafted input allowing access to the underlying server operating system.
Solution
Vendor has released updates to patch the issue. Refer to VMSA-2023-0004.html for details pertaining to the vulnerability.
Vendor References
- VMSA-2023-0004 -
www.vmware.com/security/advisories/VMSA-2023-0004.html
CVEs related to QID 730738
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| VMSA-2023-0004 |
|