Vulnerability Details CVE-2020-8010
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the robot (controller) component. A remote attacker can execute commands, read from, or write to the target system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.809
EPSS Ranking 99.1%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2020-8010
-
cpe:2.3:a:broadcom:unified_infrastructure_management:20.1
-
cpe:2.3:a:broadcom:unified_infrastructure_management:20.3.1
-
cpe:2.3:a:broadcom:unified_infrastructure_management:20.3.2
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.0
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.1
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.2
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.31
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.35
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.4
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.4.7
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.47
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.5
-
cpe:2.3:a:broadcom:unified_infrastructure_management:8.5.1
-
cpe:2.3:a:broadcom:unified_infrastructure_management:9.0.2
-
cpe:2.3:a:broadcom:unified_infrastructure_management:9.20