First published: Sat Sep 24 2016(Updated: )
The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is enabled, allows remote authenticated users to read arbitrary files via unspecified vectors, aka Bug ID CSCuy19856.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =15.5\(2\)t |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-6410 has been classified as a high severity vulnerability.
To mitigate CVE-2016-6410, update your Cisco IOS software to the recommended patched version.
CVE-2016-6410 affects users of Cisco IOS 15.6(1)T1 and IOS XE with the IOx feature set enabled.
CVE-2016-6410 allows remote authenticated users to read arbitrary files on affected devices.
CVE-2016-6410 was disclosed on September 21, 2016.