CVE-2016-4369

HPE Discovery and Dependency Mapping Inventory (DDMi) 9.30, 9.31, 9.32, 9.32 update 1, 9.32 update 2, and 9.32 update 3 allows remote authenticated users to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hp:discovery_and_dependency_mapping_inventory:9.30:*:*:*:*:*:*:*
cpe:2.3:a:hp:discovery_and_dependency_mapping_inventory:9.31:*:*:*:*:*:*:*
cpe:2.3:a:hp:discovery_and_dependency_mapping_inventory:9.32:*:*:*:*:*:*:*

History

21 Nov 2024, 02:51

Type Values Removed Values Added
References () https://h20566.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c05164819 - Vendor Advisory () https://h20566.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c05164819 - Vendor Advisory

Information

Published : 2016-06-08 15:00

Updated : 2024-11-21 02:51


NVD link : CVE-2016-4369

Mitre link : CVE-2016-4369

CVE.ORG link : CVE-2016-4369


JSON object : View

Products Affected

hp

  • discovery_and_dependency_mapping_inventory
CWE
CWE-284

Improper Access Control