CVE-2016-6465 describes a content filtering bypass vulnerability in Cisco AsyncOS Software affecting Cisco Email Security Appliances (ESAs) and Web Security Appliances (WSAs). An unauthenticated, remote attacker could exploit this flaw to bypass configured user filters, allowing malicious content to circumvent security scans. Rated Medium severity (CVSS 4.3), this vulnerability requires no privileges but does involve user interaction (UI:R), with a potential impact of information disclosure (C:L). There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
8.5.7-042CPE matchmatch criteria | cpe:2.3:a:cisco:email_security_appliance:8.5.7-042:*:*:*:*:*:*:* | ||
9.7.2-047CPE matchmatch criteria | cpe:2.3:a:cisco:email_security_appliance:9.7.2-047:*:*:*:*:*:*:* | ||
10.0.0-125CPE matchmatch criteria | cpe:2.3:a:cisco:email_security_appliance:10.0.0-125:*:*:*:*:*:*:* | ||
10.0.0-232CPE matchmatch criteria | cpe:2.3:a:cisco:email_security_appliance:10.0.0-232:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.