CVE-2020-8011

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
18/02/2020
Last modified:
30/12/2021

Description

CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a null pointer dereference vulnerability in the robot (controller) component. A remote attacker can crash the Controller service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:broadcom:unified_infrastructure_management:*:*:*:*:*:*:*:* 9.20 (including)
cpe:2.3:a:broadcom:unified_infrastructure_management:*:*:*:*:*:*:*:* 20.3.0 (including) 20.4.0 (excluding)
cpe:2.3:a:broadcom:unified_infrastructure_management:20.1:*:*:*:*:*:*:*