A remote code execution vulnerability was identified in HP Business Service Management (BSM) using Apache Commons Collection Java Deserialization versions v9.20-v9.26
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05327447