Critical severity9.8NVD Advisory· Published May 30, 2016· Updated May 6, 2026
CVE-2016-1999
CVE-2016-1999
Description
The server in HP Release Control 9.13, 9.20, and 9.21 allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.
Affected products
3cpe:2.3:a:hp:release_control:9.13:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:hp:release_control:9.13:*:*:*:*:*:*:*
- cpe:2.3:a:hp:release_control:9.20:*:*:*:*:*:*:*
- cpe:2.3:a:hp:release_control:9.21:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplaynvdPatchVendor Advisory
- www.securityfocus.com/bid/90778nvd
News mentions
0No linked articles in our index yet.