Vulnerabilities > HP > Service Manager > Critical

DATE CVE VULNERABILITY TITLE RISK
2016-03-22 CVE-2016-1998 Improper Input Validation vulnerability in HP Service Manager
HPE Service Manager (SM) 9.3x before 9.35 P4 and 9.4x before 9.41.P2 allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.
network
low complexity
hp CWE-20
critical
9.8