7.5
CVSSv3

CVE-2016-1348

Published: 26/03/2016 Updated: 03/12/2016
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS 15.0 up to and including 15.5 and IOS XE 3.3 up to and including 3.16 allow remote malicious users to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus55821.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe 3.10s 3.10.3s

cisco ios xe 3.7s 3.7.0s

cisco ios xe 3.7s 3.7.5s

cisco ios xe 3.5e 3.5.2e

cisco ios xe 3.9s 3.9.1s

cisco ios xe 3.5e 3.5.1e

cisco ios xe 3.16s 3.16.0s

cisco ios xe 3.12s 3.12.1s

cisco ios xe 3.7s 3.7.7s

cisco ios xe 3.8s 3.8.1s

cisco ios xe 3.6s 3.6.1s

cisco ios xe 3.6e 3.6.2e

cisco ios xe 3.6e 3.6.1e

cisco ios xe 3.7s 3.7.4s

samsung x14j firmware t-ms14jakucb-1102.5

cisco ios xe 3.14s 3.14.0s

cisco ios xe 3.9s 3.9.1as

cisco ios xe 3.12s 3.12.4s

cisco ios xe 3.6e 3.6.0e

cisco ios xe 3.8e 3.8.0e

cisco ios xe 3.16s 3.16.1s

cisco ios xe 3.5s 3.5.0s

cisco ios xe 3.10s 3.10.2s

cisco ios xe 3.7s 3.7.1s

cisco ios xe 3.15s 3.15.2s

cisco ios xe 3.12s 3.12.2s

cisco ios xe 3.14s 3.14.2s

cisco ios xe 3.13s 3.13.2s

cisco ios xe 3.5e 3.5.3e

cisco ios xe 3.15s 3.15.1s

cisco ios xe 3.13s 3.13.3s

cisco ios xe 3.3xo 3.3.0xo

cisco ios xe 3.7s 3.7.4as

cisco ios xe 3.13s 3.13.0as

cisco ios xe 3.7s 3.7.3s

cisco ios xe 3.9s 3.9.0as

cisco ios xe 3.10s 3.10.1xbs

cisco ios xe 3.12s 3.12.0s

cisco ios xe 3.10s 3.10.1s

cisco ios xe 3.10s 3.10.0s

sun opensolaris snv 124

cisco ios xe 3.10s 3.10.6s

cisco ios xe 3.11s 3.11.3s

cisco ios xe 3.15s 3.15.0s

cisco ios xe 3.7e 3.7.0e

cisco ios xe 3.7e 3.7.1e

cisco ios xe 3.5s 3.5.1s

cisco ios xe 3.7s 3.7.6s

cisco ios xe 3.7e 3.7.2e

cisco ios xe 3.11s 3.11.2s

cisco ios xe 3.16s 3.16.1as

cisco ios xe 3.15s 3.15.1cs

cisco ios xe 3.12s 3.12.3s

cisco ios xe 3.14s 3.14.3s

cisco ios xe 3.13s 3.13.4s

cisco ios xe 3.5s 3.5.2s

cisco ios xe 3.11s 3.11.1s

cisco ios xe 3.14s 3.14.1s

cisco ios xe 3.11s 3.11.4s

cisco ios xe 3.6e 3.6.3e

cisco ios xe 3.9s 3.9.0s

cisco ios xe 3.7s 3.7.2s

cisco ios xe 3.13s 3.13.2as

cisco ios xe 3.3xo 3.3.2xo

cisco ios xe 3.6s 3.6.0s

cisco ios xe 3.8s 3.8.0s

cisco ios xe 3.6e 3.6.2ae

cisco ios xe 3.10s 3.10.5s

cisco ios xe 3.9s 3.9.2s

cisco ios xe 3.3xo 3.3.1xo

cisco ios xe 3.7s 3.7.2ts

cisco ios xe 3.13s 3.13.1s

cisco ios xe 3.5e 3.5.0e

cisco ios xe 3.6s 3.6.2s

cisco ios xe 3.13s 3.13.0s

cisco ios xe 3.10s 3.10.4s

cisco ios xe 3.11s 3.11.0s

cisco ios xe 3.8s 3.8.2s

cisco ios xe 3.16s 3.16.0cs

zyxel gs1900-10hp firmware

netgear jr6150 firmware

zzinc keymouse firmware 3.08

Vendor Advisories

A vulnerability in the DHCP version 6 (DHCPv6) relay feature of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload The vulnerability is due to insufficient validation of DHCPv6 relay messages An attacker could exploit this vulnerability by sending a crafted DHCPv6 relay message to ...