cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-22952,https://securityvulnerability.io/vulnerability/CVE-2022-22952,File Upload Vulnerability in VMware Carbon Black App Control,"VMware Carbon Black App Control versions prior to 8.5.14, 8.6.6, 8.7.4, and 8.8.2 are affected by a file upload vulnerability. This flaw allows a malicious actor with administrative access to the App Control administration interface to upload a specially crafted file, potentially leading to code execution on the Windows instance where the AppC Server is installed. This poses significant risks to the integrity and security of the affected systems, emphasizing the need for timely updates and patching.",Vmware,Vmware Carbon Black App Control (appc),9.1,CRITICAL,0.0010499999625608325,false,,false,false,false,,,false,false,,2022-03-23T19:46:47.000Z,0 CVE-2022-22951,https://securityvulnerability.io/vulnerability/CVE-2022-22951,OS Command Injection Vulnerability in VMware Carbon Black App Control,"VMware Carbon Black App Control versions prior to 8.5.14, 8.6.6, 8.7.4, and 8.8.2 are susceptible to an OS command injection vulnerability. This issue allows authenticated users with elevated privileges and network access to the administrative interface to exploit improper input validation, potentially enabling the execution of arbitrary commands on the server. It is crucial for organizations using affected versions to implement the updates and mitigate risks associated with this security issue. For further information, refer to VMware's security advisory.",Vmware,Vmware Carbon Black App Control (appc),9.1,CRITICAL,0.001339999958872795,false,,false,false,false,,,false,false,,2022-03-23T19:46:46.000Z,0 CVE-2021-21998,https://securityvulnerability.io/vulnerability/CVE-2021-21998,Authentication Bypass in VMware Carbon Black App Control,"VMware Carbon Black App Control versions 8.0, 8.1, and 8.5 (before 8.5.8) and 8.6 (before 8.6.2) are susceptible to a significant authentication bypass flaw. This vulnerability allows an attacker with network access to the management server to potentially gain unauthorized administrative access, bypassing standard authentication controls. Organizations utilizing affected versions should prioritize applying the necessary updates to mitigate this risk.",Vmware,Vmware Carbon Black App Control (appc),9.8,CRITICAL,0.003269999986514449,false,,false,false,false,,,false,false,,2021-06-23T11:10:25.000Z,0