AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2016-6415.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSCISA known exploitedAdded May 19, 2023
RECORD STATUSAwaiting NVD dataModified May 19, 2023

Disclosure summary

Cisco IOS, IOS XR, and IOS XE contain insufficient condition checks in the part of the code that handles Internet Key Exchange version 1 (IKEv1) security negotiation requests. contains an information disclosure vulnerability in the Internet Key Exchange version 1 (IKEv1) that could allow an attacker to retrieve memory contents. Successful exploitation could allow the attacker to retrieve memory contents, which can lead to information disclosure.

CISA remediation guidance

Apply updates per vendor instructions.

Original records & references

PUBLISHED 2023-05-19T00:00:00-04:00
MODIFIED 2023-05-19T00:00:00-04:00
INGESTED 2026-10-06T11:42:58-04:00