VYPR
High severity8.8NVD Advisory· Published Jun 8, 2016· Updated May 6, 2026

CVE-2016-4369

CVE-2016-4369

Description

HPE Discovery and Dependency Mapping Inventory (DDMi) 9.30, 9.31, 9.32, 9.32 update 1, 9.32 update 2, and 9.32 update 3 allows remote authenticated users to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.

Affected products

3
  • cpe:2.3:a:hp:discovery_and_dependency_mapping_inventory:9.30:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:hp:discovery_and_dependency_mapping_inventory:9.30:*:*:*:*:*:*:*
    • cpe:2.3:a:hp:discovery_and_dependency_mapping_inventory:9.31:*:*:*:*:*:*:*
    • cpe:2.3:a:hp:discovery_and_dependency_mapping_inventory:9.32:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.