CVE-2016-9201

A vulnerability in the Zone-Based Firewall feature of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to pass traffic that should otherwise have been dropped based on the configuration. More Information: CSCuz21015. Known Affected Releases: 15.3(3)M3. Known Fixed Releases: 15.6(2)T0.1 15.6(2.0.1a)T0 15.6(2.19)T 15.6(3)M.
Configurations

Configuration 1 (hide)

cpe:2.3:o:cisco:ios:15.3\(3\)m3:*:*:*:*:*:*:*

History

21 Nov 2024, 03:00

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/94811 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/94811 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1037419 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1037419 - Third Party Advisory, VDB Entry
References () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ios-zbf - Mitigation, Vendor Advisory () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ios-zbf - Mitigation, Vendor Advisory

Information

Published : 2016-12-14 00:59

Updated : 2024-11-21 03:00


NVD link : CVE-2016-9201

Mitre link : CVE-2016-9201

CVE.ORG link : CVE-2016-9201


JSON object : View

Products Affected

cisco

  • ios
CWE
CWE-20

Improper Input Validation

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor