CVE-2016-6396: Input Validation
Cisco Firepower Management Center before 6.1 and FireSIGHT System Software before 6.1, when certain malware blocking options are enabled, allow remote attackers to bypass malware detection via crafted fields in HTTP headers, aka Bug ID CSCuz44482.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-6396?
CVE-2016-6396 is rated as high severity due to its potential to allow remote attackers to bypass malware detection.
How do I fix CVE-2016-6396?
To mitigate CVE-2016-6396, upgrade to the Cisco Firepower Management Center version 6.1 or later.
What products are affected by CVE-2016-6396?
CVE-2016-6396 affects Cisco Firepower Management Center and FireSIGHT System Software versions prior to 6.1.
What exploit does CVE-2016-6396 allow?
CVE-2016-6396 allows attackers to bypass malware detection through crafted HTTP header fields.
Is CVE-2016-6396 widely exploitable?
Yes, CVE-2016-6396 is considered widely exploitable due to the nature of the vulnerability and the affected products.