Imagine this common scenario: Your vulnerability scanner identifies a critical CVE on Server-XP-04 and automatically creates a remediation ticket. When IT investigates it, they can’t find that server anywhere in the configuration management database (CMDB). Instead, they found a configuration item called Web-Prod-04, which was marked as retired three months ago.