CVE-2016-6430: High severity cisco ip interoperability and collaboration system vulnerability
Published Nov 3, 2016
·Updated
A vulnerability in the command-line interface of the Cisco IP Interoperability and Collaboration System (IPICS) could allow an authenticated, local attacker to elevate the privilege level associated with their session. More Information: CSCva38636. Known Affected Releases: 4.10(1). Known Fixed Releases: 5.0(1).
Affected Software
9 affected components
cisco IP Interoperability and Collaboration System=4.0\(1\)
cisco IP Interoperability and Collaboration System=4.5\(1\)
cisco IP Interoperability and Collaboration System=4.6\(1\)
cisco IP Interoperability and Collaboration System=4.7\(1\)
cisco IP Interoperability and Collaboration System=4.8\(1\)
cisco IP Interoperability and Collaboration System=4.8\(2\)
cisco IP Interoperability and Collaboration System=4.9\(1\)
cisco IP Interoperability and Collaboration System=4.9\(2\)
cisco IP Interoperability and Collaboration System=4.10\(1\)
Event History
Nov 3, 2016
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-6430?
CVE-2016-6430 has a moderate severity rating.
2
How do I fix CVE-2016-6430?
To fix CVE-2016-6430, upgrade to a fixed release version of Cisco IP Interoperability and Collaboration System.
3
What versions of Cisco IP Interoperability and Collaboration System are affected by CVE-2016-6430?
Affected versions include 4.0(1), 4.5(1), 4.6(1), 4.7(1), 4.8(1), 4.8(2), 4.9(1), 4.9(2), and 4.10(1).
4
Who can exploit CVE-2016-6430?
An authenticated, local attacker is required to exploit CVE-2016-6430.
5
What type of vulnerability is CVE-2016-6430?
CVE-2016-6430 is a privilege escalation vulnerability in the command-line interface of Cisco IPICS.