← Back

CVE-2016-6407

nvd nist
Published: Sep 17, 2016Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Cisco AsyncOS through 9.5.0-444 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (link saturation) by making many HTTP requests for overlapping byte ranges simultaneously, aka Bug ID CSCuz27219.

Affected (41)

1 product
Web Security Appliance
Configuration A
41 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 5.6.0-623
Version 6.0.0-000
Version 7.1.0
Version 7.1.1
Version 7.1.2
Version 7.1.3
Version 7.1.4
Version 7.5.0-000
Version 7.5.0-825
Version 7.5.1-000
Version 7.5.2-000
Version 7.5.2-hp2-303
Version 7.7.0-000
Version 7.7.0-608
Version 7.7.1-000
Version 7.7.5-835
Version 8.0.0-000
Version 8.0.5
Version 8.0.6-078
Version 8.0.6-119
Version 8.0.6
Version 8.0.7-142
Version 8.0.7
Version 8.0.8-mr-113
Version 8.5.0-497
Version 8.5.0.000
Version 8.5.1-021
Version 8.5.2-024
Version 8.5.2-027
Version 8.5.3-055
Version 8.8.0-000
Version 8.8.0-085
Version 9.0.0-193
Version 9.0_base
Version 9.1.0-000
Version 9.1.0-070
Version 9.1_base
Version 9.5.0-235
Version 9.5.0-284
Version 9.5.0-444
Version 9.5_base

Related CWEs

References (6)

Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.