7.8
CVSSv2

CVE-2016-6378

Published: 05/10/2016 Updated: 30/07/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS XE 3.1 up to and including 3.17 and 16.1 up to and including 16.2 allows remote malicious users to cause a denial of service (device reload) via crafted ICMP packets that require NAT, aka Bug ID CSCuw85853.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe 3.3.1s

cisco ios xe 3.7.4as

cisco ios xe 3.15.0s

cisco ios xe 3.11.4s

cisco ios xe 3.14.2s

cisco ios xe 3.16.0s

cisco ios xe 3.13.4s

cisco ios xe 3.4.2s

cisco ios xe 3.6.1s

cisco ios xe 3.7.5s

cisco ios xe 3.12.1s

cisco ios xe 3.7.2ts

cisco ios xe 3.16.1as

cisco ios xe 3.8.1s

cisco ios xe 3.10.5s

cisco ios xe 3.5.0s

cisco ios xe 3.1.4s

cisco ios xe 3.9.0as

cisco ios xe 3.14.3s

cisco ios xe 3.9.1as

cisco ios xe 3.4.6s

cisco ios xe 3.10.4s

cisco ios xe 3.12.2s

cisco ios xe 3.16.0cs

cisco ios xe 3.2.1s

cisco ios xe 3.12.4s

cisco ios xe 3.4.4s

cisco ios xe 3.6.2s

cisco ios xe 3.6.0s

cisco ios xe 3.7.4s

cisco ios xe 3.13.0as

cisco ios xe 3.7.3s

cisco ios xe 3.4.0s

cisco ios xe 3.2.2s

cisco ios xe 3.12.3s

cisco ios xe 3.14.1s

cisco ios xe 3.13.3s

cisco ios xe 3.15.1s

cisco ios xe 3.16.1s

cisco ios xe 16.1.4

cisco ios xe 3.8.2s

cisco ios xe 3.13.2as

cisco ios xe 3.1.3s

cisco ios xe 3.9.0s

cisco ios xe 3.13.2s

cisco ios xe 3.4.1s

cisco ios xe 3.10.6s

cisco ios xe 3.15.2s

cisco ios xe 3.17.0s

cisco ios xe 3.12.0s

cisco ios xe 3.4.3s

cisco ios xe 3.15.3s

cisco ios xe 3.10.3s

cisco ios xe 3.13.1s

cisco ios xe 3.4.5s

cisco ios xe 3.3.0s

cisco ios xe 3.3.2s

cisco ios xe 3.7.6s

cisco ios xe 3.10.2ts

cisco ios xe 16.2.1

cisco ios xe 3.5.2s

cisco ios xe 3.7.0s

cisco ios xe 3.13.0s

cisco ios xe 3.14.0s

cisco ios xe 3.7.2s

cisco ios xe 3.7.7s

cisco ios xe 3.1.4as

cisco ios xe 3.10.1s

cisco ios xe 3.8.0s

cisco ios xe 3.9.2s

cisco ios xe 3.10.2s

cisco ios xe 3.9.1s

cisco ios xe 3.12.0as

cisco ios xe 3.10.0s

cisco ios xe 3.11.3s

cisco ios xe 16.1.3

cisco ios xe 3.15.1cs

cisco ios xe 3.7.1s

cisco ios xe 3.11.0s

cisco ios xe 3.5.1s

cisco ios xe 3.11.1s

cisco ios xe 3.7.0bs

cisco ios xe 3.11.2s

Vendor Advisories

A vulnerability in the implementation of Network Address Translation (NAT) functionality in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload The vulnerability is due to improper handling of malformed ICMP packets by the affected software An attacker could exploit this vulnerability by se ...