CVE-2016-1409 describes a denial-of-service vulnerability in the IPv6 Neighbor Discovery (ND) protocol implementation affecting Cisco IOS XE, IOS XR, and NX-OS. Attackers can exploit this by sending crafted ND messages, leading to a packet-processing outage. This vulnerability is rated as high severity (CVSS 7.5) due to its network-based attack vector, low attack complexity, and high impact on availability. Notably, this flaw was actively exploited in the wild in May 2016, and while no public exploit code is available, it garnered significant community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
12.0\(1\)CPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.0\(1\):*:*:*:*:*:*:* | ||
12.0\(1\)dbCPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.0\(1\)db:*:*:*:*:*:*:* | ||
12.0\(1\)sCPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.0\(1\)s:*:*:*:*:*:*:* | ||
12.0\(1\)tCPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.0\(1\)t:*:*:*:*:*:*:* | ||
12.0\(1\)t1CPE matchmatch criteria | cpe:2.3:o:cisco:ios:12.0\(1\)t1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.