← Back to browse · API

CVE-2016-6415

Severity
HIGH
CVSS
7.5
EPSS
0.87313
Risk score
85.56
CISA KEV
Yes
PoC
No
Published
2023-05-19
Modified
2023-05-19
First seen
2026-08-07
Aliases
EUVD-2016-7338, GHSA-CCM6-Q86P-2HWX
Products
Cisco:IOS, IOS XR, and IOS XE, n/a:n/a n/a
Sources
euvd EUVD-2016-7338
cisa.gov CVE-2016-6415

Description

Cisco IOS, IOS XR, and IOS XE contain insufficient condition checks in the part of the code that handles Internet Key Exchange version 1 (IKEv1) security negotiation requests. contains an information disclosure vulnerability in the Internet Key Exchange version 1 (IKEv1) that could allow an attacker to retrieve memory contents. Successful exploitation could allow the attacker to retrieve memory contents, which can lead to information disclosure.

References