← Back

CVE-2016-6360

nvd nist
Published: Oct 28, 2016Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A vulnerability in Advanced Malware Protection (AMP) for Cisco Email Security Appliances (ESA) and Web Security Appliances (WSA) could allow an unauthenticated, remote attacker to cause a partial denial of service (DoS) condition due to the AMP process unexpectedly restarting. Affected Products: Cisco AsyncOS Software for Email Security Appliances (ESA) versions 9.5 and later up to the first fixed release, Cisco AsyncOS Software for Web Security Appliances (WSA) all versions prior to the first fixed release. More Information: CSCux56406, CSCux59928. Known Affected Releases: 9.6.0-051 9.7.0-125 8.8.0-085 9.5.0-444 WSA10.0.0-000. Known Fixed Releases: 9.7.1-066 WSA10.0.0-233.

Affected (16)

2 products
Email Security Appliance
Web Security Appliance
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 9.5.0-000
Version 9.5.0-201
Version 9.6.0-000
Version 9.6.0-042
Version 9.6.0-051
Version 9.7.0-125
Cisco
Version 8.8.0-085
Version 9.0.0-193
Version 9.0_base
Version 9.1.0-000
Version 9.1.0-070
Version 9.1_base
Version 9.5.0-235
Version 9.5.0-284
Version 9.5.0-444
Version 9.5_base

References (8)

Source: psirt@cisco.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.