VYPR

CA Unified Infrastructure Management

by Broadcom Corporation

CVEs (5)

  • CVE-2020-8012CriFeb 18, 2020
    risk 0.73cvss 9.8epss 0.78

    CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerability in the robot (controller) component. A remote attacker can execute arbitrary code.

  • CVE-2020-8010CriFeb 18, 2020
    risk 0.71cvss 9.8epss 0.49

    CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the robot (controller) component. A remote attacker can execute commands, read from, or write to the target system.

  • CVE-2025-10847HigOct 1, 2025
    risk 0.55cvss epss 0.00

    DX Unified Infrastructure Management (Nimsoft/UIM) and below contains an improper ACL handling vulnerability in the robot (controller) component. A remote attacker can execute commands, read from, or write to the target system.

  • CVE-2020-28421HigNov 23, 2020
    risk 0.51cvss 7.8epss 0.00

    CA Unified Infrastructure Management 20.1 and earlier contains a vulnerability in the robot (controller) component that allows local attackers to elevate privileges.

  • CVE-2020-8011HigFeb 18, 2020
    risk 0.49cvss 7.5epss 0.02

    CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a null pointer dereference vulnerability in the robot (controller) component. A remote attacker can crash the Controller service.

VYPR — Vulnerability Intelligence