Record summary
A quick snapshot of what this page covers.
Vulnerability status
How serious this vulnerability is and whether it is known to be exploited.
- CVE ID
- CVE-2016-6415
- Vendor/project
- Cisco
- Product
- IOS, IOS XR, and IOS XE
- Vulnerability name
- Cisco IOS, IOS XR, and IOS XE IKEv1 Information Disclosure Vulnerability
- Date added
- 2023-05-19
- Due date
- 2023-06-09
- Known ransomware campaign use
- Unknown
Exploit context
What the vulnerability is about.
Cisco IOS, IOS XR, and IOS XE contain insufficient condition checks in the part of the code that handles Internet Key Exchange version 1 (IKEv1) security negotiation requests. contains an information disclosure vulnerability in the Internet Key Exchange version 1 (IKEv1) that could allow an attacker to retrieve memory contents. Successful exploitation could allow the attacker to retrieve memory contents, which can lead to information disclosure.
Source
Where this page information comes from.
Original source
Original source links
Open the public records and source datasets used for this page.
