CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache, Java. It may be remotely exploitable.
CVE
CVE-2016-4368
Severity
CRITICAL
CVSS
9.8
EPSS
4.73%
Apache Java
Original NVD Description
HPE Universal CMDB 10.0 through 10.21, Universal CMDB Configuration Manager 10.0 through 10.21, and Universal Discovery 10.0 through 10.21 allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections (ACC) library.