Vulnerabilities > Carbonblack

DATE CVE VULNERABILITY TITLE RISK
2018-06-13 CVE-2018-10407 Improper Verification of Cryptographic Signature vulnerability in Carbonblack Carbon Black CB
An issue was discovered in Carbon Black Cb Response.
4.3
2018-02-19 CVE-2016-9568 7PK - Security Features vulnerability in Carbonblack Carbon Black 5.1.1.60603
A security design issue can allow an unprivileged user to interact with the Carbon Black Sensor and perform unauthorized actions.
network
low complexity
carbonblack CWE-254
critical
10.0
2018-02-12 CVE-2016-9570 NULL Pointer Dereference vulnerability in Carbonblack Carbon Black 5.1.1.60603
cb.exe in Carbon Black 5.1.1.60603 allows attackers to cause a denial of service (out-of-bounds read, invalid pointer dereference, and application crash) by leveraging access to the NetMon named pipe.
network
low complexity
carbonblack CWE-476
5.0
2018-02-12 CVE-2016-9569 Out-of-bounds Read vulnerability in Carbonblack Carbon Black 5.1.1.60603
The cbstream.sys driver in Carbon Black 5.1.1.60603 allows local users with admin privileges to cause a denial of service (out-of-bounds read and system crash) via a large counter value in an 0x62430028 IOCTL call.
local
low complexity
carbonblack CWE-125
4.9
2014-04-22 CVE-2014-1615 Cross-Site Request Forgery (CSRF) vulnerability in Carbonblack Carbon Black 4.0.3/4.1.0
Multiple cross-site request forgery (CSRF) vulnerabilities in Carbon Black before 4.1.0 allow remote attackers to hijack the authentication of administrators for requests that add new administrative users and have other unspecified action, as demonstrated by a request to api/user.
6.8