{"cvss":0.0,"datePublished":"2023-05-19","dateUpdated":"2023-05-19","description":"Cisco IOS, IOS XR, and IOS XE contain insufficient condition checks in the part of the code that handles Internet Key Exchange version 1 (IKEv1) security negotiation requests. contains an information disclosure vulnerability in the Internet Key Exchange version 1 (IKEv1) that could allow an attacker to retrieve memory contents. Successful exploitation could allow the attacker to retrieve memory contents, which can lead to information disclosure.","dueDate":"2023-06-09","id":"CVE-2016-6415","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Unknown","notes":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160916-ikev1; https://nvd.nist.gov/vuln/detail/CVE-2016-6415","product":"IOS, IOS XR, and IOS XE","requiredAction":"Apply updates per vendor instructions.","severity":"HIGH","source":"cisa_known_exploited","title":"Cisco IOS, IOS XR, and IOS XE IKEv1 Information Disclosure Vulnerability","vendor":"Cisco"}