CVE-2016-6447
published 2016-11-03CVE-2016-6447: A vulnerability in Cisco Meeting Server and Meeting App could allow an unauthenticated, remote attacker to execute arbitrary code on an affected system. This…
PriorityP263critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
3.08%
86.2th percentile
A vulnerability in Cisco Meeting Server and Meeting App could allow an unauthenticated, remote attacker to execute arbitrary code on an affected system. This vulnerability affects the following products: Cisco Meeting Server releases prior to 2.0.1, Acano Server releases prior to 1.8.16 and prior to 1.9.3, Cisco Meeting App releases prior to 1.9.8, Acano Meeting Apps releases prior to 1.8.35. More Information: CSCva75942 CSCvb67878. Known Affected Releases: 1.81.92.0.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | meeting_app | — | — |
| cisco | meeting_app | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server_and_meeting_app | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Exploit vector is crafted IPv6 input sent to the vulnerable function; monitor for malformed/crafted IPv6 packets targeting Cisco Meeting Server or Meeting App endpoints ↗
- →Successful exploitation results in a buffer underflow leading to incorrect memory allocation and potential device reload; unexpected process crashes or device reloads on Cisco Meeting Server may indicate exploitation attempts ↗
- →Track Cisco bug IDs CSCva75942 and CSCvb67878 for patch status; unpatched instances of Cisco Meeting Server < 2.0.1, Acano Server < 1.8.16 / < 1.9.3, Cisco Meeting App < 1.9.8, Acano Meeting Apps < 1.8.35 are vulnerable ↗
- ·No workarounds are available for this vulnerability; the only mitigation is patching to a fixed software release ↗
- ·Vulnerability is exploitable by unauthenticated remote attackers, meaning no credentials or prior access are required, significantly raising exposure for internet-facing deployments ↗
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_cisco7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Meeting Server and Meeting App Buffer Underflow Vulnerability
vendor_cisco·2016-11-02·CVSS 7.5
CVE-2016-6447 [HIGH] CWE-119 Cisco Meeting Server and Meeting App Buffer Underflow Vulnerability
Cisco Meeting Server and Meeting App Buffer Underflow Vulnerability
A vulnerability in Cisco Meeting Server and Meeting App could allow an unauthenticated, remote attacker to execute arbitrary code on an affected system.
The vulnerability exists because the software does not perform sufficient boundary checks on user-supplied data. An unauthenticated, remote attacker could exploit this vulnerability by sending crafted IPv6 input to the vulnerable function. A successful exploit could result in an exploitable buffer underflow condition. An attacker could leverage this buffer underflow condition to incorrectly allocate memory and cause a reload of the device or execute arbitrary code with the privileges of the affected application.
Cisco has released software updates that address this vuln
Cisco
Cisco Meeting Server and Meeting App Buffer Underflow Vulnerability
vendor_cisco
CVE-2016-6447 Cisco Meeting Server and Meeting App Buffer Underflow Vulnerability
CVE-2016-6447: Cisco Meeting Server and Meeting App Buffer Underflow Vulnerability
A vulnerability in Cisco Meeting Server and Meeting App could allow an unauthenticated, remote attacker to execute arbitrary code on an affected system. The vulnerability exists because the software does not perform sufficient boundary checks on user-supplied data. An unauthenticated, remote attacker could exploit this vulnerability by sending crafted IPv6 input to the vulnerable function. A successful exploit could result in an exploitable buffer underflow condition. An attacker could leverage this buffer underflow condition to incorrectly allocate memory and cause a reload of the device or execute arbitrary code with the privileges of the affected application. Cisco has released software updates that addre
GHSA
GHSA-54fq-cr2j-w2qc: A vulnerability in Cisco Meeting Server and Meeting App could allow an unauthenticated, remote attacker to execute arbitrary code on an affected syste
ghsa_unreviewed·2022-05-17
CVE-2016-6447 [CRITICAL] CWE-119 GHSA-54fq-cr2j-w2qc: A vulnerability in Cisco Meeting Server and Meeting App could allow an unauthenticated, remote attacker to execute arbitrary code on an affected syste
A vulnerability in Cisco Meeting Server and Meeting App could allow an unauthenticated, remote attacker to execute arbitrary code on an affected system. This vulnerability affects the following products: Cisco Meeting Server releases prior to 2.0.1, Acano Server releases prior to 1.8.16 and prior to 1.9.3, Cisco Meeting App releases prior to 1.9.8, Acano Meeting Apps releases prior to 1.8.35. More Information: CSCva75942 CSCvb67878. Known Affected Releases: 1.81.92.0.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/94073http://www.securitytracker.com/id/1037180https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161102-cmshttp://www.securityfocus.com/bid/94073http://www.securitytracker.com/id/1037180https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161102-cms
2016-11-03
Published