First published: Tue Feb 18 2020(Updated: )
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the robot (controller) component. A remote attacker can execute commands, read from, or write to the target system.
Credit: vuln@ca.com
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Unified Infrastructure Management | <=9.20 | |
Broadcom Unified Infrastructure Management | >=20.3.0<=20.3.3 | |
Broadcom Unified Infrastructure Management | =20.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The potential impacts of CVE-2020-8010 include unauthorized command execution, and unauthorized reading from or writing to the target system.
CVE-2020-8010 affects CA Unified Infrastructure Management versions 20.1, 20.3.x, and 9.20 and below.
To remediate CVE-2020-8010, it is recommended to apply the latest patches and updates provided by Broadcom for the affected versions.
CVE-2020-8010 is classified as a critical vulnerability due to its potential for remote command execution.
Organizations can protect themselves from CVE-2020-8010 by implementing strong access controls and regularly monitoring their systems for unusual activities.