CVE 8.4 HIGH

DX UIM Probe Improper ACL Handling RCE_CVE-2025-10847

8.4 / 10
HIGH
CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:L/VI:H/VA:H/SC:L/SI:N/SA:L/S:N/AU:Y/R:U/V:D/RE:L/U:Amber

Description

DX Unified Infrastructure Management (Nimsoft/UIM) and below contains an improper ACL handling vulnerability in the robot (controller) component. A remote attacker can execute commands, read from, or write to the target system.

Basic Information

ID CVE-2025-10847
Source symantec
Published Oct 1, 2025 at 10:48

Affected Product

Vendor Broadcom
Product Unified Infrastructure Management
Version 23.4.5
Affected Versions Broadcom Unified Infrastructure Management 23.4.5

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.