3.6
CVSSv3

CVE-2020-4008

Published: 16/12/2020 Updated: 13/06/2022
CVSS v2 Base Score: 3.3 | Impact Score: 4.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 3.6 | Impact Score: 2.5 | Exploitability Score: 1
VMScore: 294
Vector: AV:L/AC:M/Au:N/C:N/I:P/A:P

Vulnerability Summary

The installer of the macOS Sensor for VMware Carbon Black Cloud (before 3.5.1) handles certain files in an insecure way. A malicious actor who has local access to the endpoint on which a macOS sensor is going to be installed, may overwrite a limited number of files with output from the sensor installation.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vmware carbon_black_cloud