← Back

CVE-2016-1349

nvd nist
Published: Mar 26, 2016Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7 allows remote attackers to cause a denial of service (device reload) via crafted image list parameters in a Smart Install packet, aka Bug ID CSCuv45410.

Affected (38)

Show all products
1 product
Ios Xe
1 product
Core I5 9400f Firmware
1 product
Jr6150 Firmware
1 product
X14j Firmware
1 product
Opensolaris
1 product
Gs1900 10hp Firmware
1 product
Keymouse Firmware
Configuration A
38 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 3.2ja_3.2.0ja
Version 3.2se_3.2.0se
Version 3.2se_3.2.1se
Version 3.2se_3.2.2se
Version 3.2se_3.2.3se
Version 3.3se_3.3.0se
Version 3.3se_3.3.1se
Version 3.3se_3.3.2se
Version 3.3se_3.3.3se
Version 3.3se_3.3.4se
Version 3.3se_3.3.5se
Version 3.3xo_3.3.0xo
Version 3.3xo_3.3.1xo
Version 3.3xo_3.3.2xo
Version 3.4sg_3.4.0sg
Version 3.4sg_3.4.1sg
Version 3.4sg_3.4.2sg
Version 3.4sg_3.4.3sg
Version 3.4sg_3.4.4sg
Version 3.4sg_3.4.5sg
Version 3.4sg_3.4.6sg
Version 3.5e_3.5.0e
Version 3.5e_3.5.1e
Version 3.5e_3.5.2e
Version 3.5e_3.5.3e
Version 3.6e_3.6.0e
Version 3.6e_3.6.1e
Version 3.6e_3.6.2ae
Version 3.6e_3.6.2e
Version 3.7e_3.7.0e
Version 3.7e_3.7.1e
Version 3.7e_3.7.2e
All versions
Before 2017-01-06
Version t-ms14jakucb-1102.5
Version snv_124
Before 2.50\(aazi.0\)c0
Version 3.08

Related CWEs

References (4)

Timeline

No history available yet.