Lucene search

K
cvelistCiscoCVELIST:CVE-2016-1411
HistoryDec 14, 2016 - 12:37 a.m.

CVE-2016-1411

2016-12-1400:37:00
cisco
www.cve.org
3

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

45.9%

A vulnerability in the update functionality of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA), Cisco Web Security Appliance (WSA), and Cisco Content Management Security Appliance (SMA) could allow an unauthenticated, remote attacker to impersonate the update server. More Information: CSCul88715, CSCul94617, CSCul94627. Known Affected Releases: 7.5.2-201 7.6.3-025 8.0.1-023 8.5.0-000 8.5.0-ER1-198 7.5.2-HP2-303 7.7.0-608 7.7.5-835 8.5.1-021 8.8.0-000 7.9.1-102 8.0.0-404 8.1.1-013 8.2.0-222. Known Fixed Releases: 8.0.2-069 8.0.2-074 8.5.7-042 9.1.0-032 8.5.2-027 9.6.1-019.

CNA Affected

[
  {
    "product": "Cisco AsyncOS",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Cisco AsyncOS"
      }
    ]
  }
]

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

45.9%

Related for CVELIST:CVE-2016-1411