Null Pointer Dereference Vulnerability in CA Unified Infrastructure Management by Broadcom
CVE-2020-8011

7.5HIGH

Key Information:

What is CVE-2020-8011?

The CA Unified Infrastructure Management (Nimsoft/UIM) product line is susceptible to a null pointer dereference vulnerability found in the robot (controller) component. This vulnerability can be exploited by a remote attacker, allowing them to crash the Controller service, resulting in potential service disruption. Affected versions include 20.1, all 20.3.x releases, and 9.20 or earlier versions, necessitating immediate attention to mitigate potential risks.

Affected Version(s)

CA Unified Infrastructure Management (Nimsoft/UIM) 9.20 and below

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.