HPE Asset Manager 9.40, 9.41, and 9.50 and Asset Manager CloudSystem Chargeback 9.40 allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections (ACC) library.
                
            References
                    | Link | Resource | 
|---|---|
| https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05064889 | Patch Vendor Advisory | 
| https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05064889 | Patch Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    21 Nov 2024, 02:47
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05064889 - Patch, Vendor Advisory | 
Information
                Published : 2016-04-05 18:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-2000
Mitre link : CVE-2016-2000
CVE.ORG link : CVE-2016-2000
JSON object : View
Products Affected
                hp
- asset_manager
- asset_manager_cloudsystem_chargeback
CWE
                
                    
                        
                        CWE-19
                        
            Data Processing Errors
