CVE-2016-1348 is a denial-of-service vulnerability affecting Cisco IOS 15.0-15.5 and IOS XE 3.3-3.16, allowing remote attackers to trigger a device reload via a crafted DHCPv6 Relay message. With a CVSS score of 7.5 (HIGH), this vulnerability is easily exploitable over the network without authentication or user interaction, leading to high availability impact. While no public exploit code or active exploitation is confirmed, the vulnerability has garnered some community discussion and media coverage, indicating awareness within the cybersecurity landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.3xo_3.3.0xoCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:3.3xo_3.3.0xo:*:*:*:*:*:*:* | ||
3.3xo_3.3.1xoCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:3.3xo_3.3.1xo:*:*:*:*:*:*:* | ||
3.3xo_3.3.2xoCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:3.3xo_3.3.2xo:*:*:*:*:*:*:* | ||
3.5e_3.5.0eCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:3.5e_3.5.0e:*:*:*:*:*:*:* | ||
3.5e_3.5.1eCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:3.5e_3.5.1e:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.