7.8
CVSSv2

CVE-2016-6384

Published: 05/10/2016 Updated: 02/06/2020
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS 12.2 up to and including 12.4 and 15.0 up to and including 15.6 and IOS XE 3.1 up to and including 3.17 and 16.2 allow remote malicious users to cause a denial of service (device reload) via crafted fields in an H.323 message, aka Bug ID CSCux04257.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios

cisco ios xe

cisco ios xe 16.2

Vendor Advisories

A vulnerability in the H323 subsystem of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to create a denial of service (DoS) condition on an affected device The vulnerability is due to a failure to properly validate certain fields in an H323 protocol suite message When processing the malicious message, the affecte ...