CVE-2016-6366

Scores

EPSS

0.914high91.4%
0%20%40%60%80%100%

Percentile: 91.4%

CVSS

8.8high3.x
0246810

CVSS Score: 8.8/10

All CVSS Scores

CVSS 3.x
8.8

Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS 2.0
8.5

Vector: AV:N/AC:M/Au:S/C:C/I:C/A:C

Description

Buffer overflow in Cisco Adaptive Security Appliance (ASA) Software through 9.4.2.3 on ASA 5500, ASA 5500-X, ASA Services Module, ASA 1000V, ASAv, Firepower 9300 ASA Security Module, PIX, and FWSM devices allows remote authenticated users to execute arbitrary code via crafted IPv4 SNMP packets, aka Bug ID CSCva92151 or EXTRABACON.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-120

Related Vulnerabilities

Exploits

Exploit ID: CVE-2016-6366

Source: cisa

URL: https://www.cisa.gov/known-exploited-vulnerabilities-catalog

Exploit ID: 40258

Source: exploitdb

URL: https://www.exploit-db.com/exploits/40258

Vulnerable Software (3)

Type: Configuration

Vendor: *

Product: adaptive_security_appliance_software

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:cisco:adaptive_security_appliance_software:*:*:*:*:*:*:*:*",          "versionEndExcluding": "9.0.4.40",      ...

Source: nvd

Type: Configuration

Vendor: *

Product: asa_1000v_cloud_firewall_software

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:cisco:asa_1000v_cloud_firewall_software:8.7.1:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:cisco:asa_1000v_c...

Source: nvd

Type: Configuration

Vendor: *

Product: pix_firewall_software

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:cisco:pix_firewall_software:-:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator": ...

Source: nvd

End of list