CVE-2016-6410

MEDIUM

Cisco CAF - Info Disclosure

Title source: llm

Description

The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is enabled, allows remote authenticated users to read arbitrary files via unspecified vectors, aka Bug ID CSCuy19856.

Scores

CVSS v3 6.5
EPSS 0.0031
EPSS Percentile 53.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-20
Status published

Affected Products (2)

cisco/ios
n/a/n/a

Timeline

Published Sep 24, 2016
Tracked Since Feb 18, 2026