CyberSec.Space Logo
Back to CVE Browser

CVE-2016-6415

Known Exploited (CISA KEV)HIGH
7.5
CVSS Severity Score
EPSS Score95.8500%
EPSS Percentile96.27th
PublishedSep 19, 2016
Last ModifiedApr 22, 2026

Vulnerability Description

The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and PIX before 7.0 allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request, aka Bug IDs CSCvb29204 and CSCvb36055 or BENIGNCERTAIN.

Affected Platforms (CPE)

πŸ’»
Cisco

Ios

>= 12.2 and <= 12.4
πŸ’»
Cisco

Ios

>= 15.0 and <= 15.6
πŸ’»
Cisco

Ios Xe

<= 3.18s
πŸ’»
Cisco

Ios Xr

>= 4.3.0 and <= 4.3.4
πŸ’»
Cisco

Ios Xr

>= 5.0.0 and < 5.3.0

References & Advisories

Related Vulnerabilities