Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2016-1287Improper Restriction of Operations within the Bounds of a Memory Buffer in Cisco Adaptive Security Appliance Software

Severity
9.8CRITICALNVD
EPSS
89.8%
top 0.43%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedFeb 11
Latest updateMay 17

Description

Buffer overflow in the IKEv1 and IKEv2 implementations in Cisco ASA Software before 8.4(7.30), 8.7 before 8.7(1.18), 9.0 before 9.0(4.38), 9.1 before 9.1(7), 9.2 before 9.2(4.5), 9.3 before 9.3(3.7), 9.4 before 9.4(2.4), and 9.5 before 9.5(2.2) on ASA 5500 devices, ASA 5500-X devices, ASA Services Module for Cisco Catalyst 6500 and Cisco 7600 devices, ASA 1000V devices, Adaptive Security Virtual Appliance (aka ASAv), Firepower 9300 ASA Security Module, and ISA 3000 devices allows remote attacker

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-8657-w7wc-ccqj: Buffer overflow in the IKEv1 and IKEv2 implementations in Cisco ASA Software before 82022-05-17
CVEList
CVE-2016-1287: Buffer overflow in the IKEv1 and IKEv2 implementations in Cisco ASA Software before 82016-02-11

💥Exploits & PoCs

1
Exploit-DB
Cisco ASA Software 8.x/9.x - IKEv1 / IKEv2 Buffer Overflow2016-05-17

🔍Detection Rules

5
Suricata
ET ATTACK_RESPONSE Possible CVE-2016-1287 Inbound Reverse CLI Shellcode2016-05-18
Suricata
ET EXPLOIT CVE-2016-1287 Public Exploit ShellCode2016-05-18
Suricata
ET EXPLOIT Possible CVE-2016-1287 Invalid Fragment Size Inbound2016-02-12
Suricata
ET EXPLOIT Possible CVE-2016-1287 Invalid Fragment Size Inbound 32016-02-12
Suricata
ET EXPLOIT Possible CVE-2016-1287 Invalid Fragment Size Inbound 22016-02-12

📋Vendor Advisories

1
Cisco
Cisco ASA Software IKEv1 and IKEv2 Buffer Overflow Vulnerability2016-02-11

🕵️Threat Intelligence

2
Qualys
Critical Cisco VPN Flaw | Qualys2016-02-12
Qualys
Critical Cisco VPN Flaw | Qualys2016-02-12