CVE-2016-6415

Scores

EPSS

0.930high93.0%
0%20%40%60%80%100%

Percentile: 93.0%

CVSS

7.5high3.x
0246810

CVSS Score: 7.5/10

All CVSS Scores

CVSS 3.x
7.5

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CVSS 2.0
5.0

Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Description

The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and PIX before 7.0 allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request, aka Bug IDs CSCvb29204 and CSCvb36055 or BENIGNCERTAIN.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-200

Exploits

Exploit ID: 43383

Source: exploitdb

URL: https://www.exploit-db.com/exploits/43383

Exploit ID: CVE-2016-6415

Source: github-poc

URL: https://github.com/3ndG4me/CVE-2016-6415-BenignCertain-Monitor

Vulnerable Software (3)

Type: Configuration

Vendor: *

Product: ios

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*",      "versionEndIncluding": "12.4",      "versionStartIncluding": "12.2",      "vulnerable": true    },    {    ...

Source: nvd

Type: Configuration

Vendor: *

Product: ios_xe

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*",      "versionEndIncluding": "12.4",      "versionStartIncluding": "12.2",      "vulnerable": true    },    {    ...

Source: nvd

Type: Configuration

Vendor: *

Product: ios_xr

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*",      "versionEndIncluding": "12.4",      "versionStartIncluding": "12.2",      "vulnerable": true    },    {    ...

Source: nvd

End of list