First published: Thu Jan 08 2009(Updated: )
The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not properly restrict access, which allows remote attackers to execute arbitrary commands via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Unicenter Service Metric Analysis | =r11.1 | |
Broadcom Unicenter Service Metric Analysis | =r11.0 | |
Broadcom Unicenter Service Metric Analysis | =r11.1-sp1 | |
Broadcom CA Service Level Management | =3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0043 is classified as a high severity vulnerability due to its potential to allow remote code execution.
To remediate CVE-2009-0043, upgrade to the latest version of CA Service Metric Analysis or Service Level Management that addresses this vulnerability.
CVE-2009-0043 affects CA Service Metric Analysis versions r11.0, r11.1, and r11.1 SP1, as well as CA Service Level Management version 3.5.
CVE-2009-0043 can facilitate remote code execution attacks by allowing unauthorized access to the smmsnmpd service.
CVE-2009-0043 was disclosed in January 2009.