cbcvebase.
CVE-2016-1345
published 2016-04-01

CVE-2016-1345: Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware protection…

PriorityP343high7.5CVSS 3.0
AVNACLPRNUINSUCNIHAN
EPSS
1.40%
69.4th percentile
Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware protection via crafted fields in HTTP headers, aka Bug ID CSCux22726.

Affected

24 ranges
VendorProductVersion rangeFixed in
ciscoasa_with_firepower_services
ciscoasa_with_firepower_services
ciscoasa_with_firepower_services
ciscoasa_with_firepower_services
ciscoasa_with_firepower_services
ciscoasa_with_firepower_services
ciscoasa_with_firepower_services
ciscoasa_with_firepower_services
ciscoasa_with_firepower_services
ciscofirepower_malware_block
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software
ciscofiresight_system_software

CVSS provenance

nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
vendor_cisco5.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.