CVE-2016-6412

The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is enabled, allows man-in-the-middle attackers to trigger arbitrary downloads via crafted HTTP headers, aka Bug ID CSCuz84773.
Configurations

Configuration 1 (hide)

cpe:2.3:o:cisco:ios:15.6\(1\)t1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2016-09-24 01:59

Updated : 2024-02-28 15:21


NVD link : CVE-2016-6412

Mitre link : CVE-2016-6412

CVE.ORG link : CVE-2016-6412


JSON object : View

Products Affected

cisco

  • ios
CWE
CWE-20

Improper Input Validation