Vulnerability Description
Buffer overflow in the web server on Cisco DPC2203 and EPC2203 devices with firmware r1_customer_image allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCuv05935.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Dpc2203 | - |
| Cisco | Dpc2203 Cable Modem Firmware | r1_customer_image_base |
| Cisco | Epc2203 | - |
| Cisco | Epc2203 Cable Modem Firmware | r1_customer_image_base |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/84279
- http://www.securitytracker.com/id/1035235
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-2Vendor Advisory
- http://www.securityfocus.com/bid/84279
- http://www.securitytracker.com/id/1035235
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-2Vendor Advisory
FAQ
What is CVE-2016-1327?
CVE-2016-1327 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Buffer overflow in the web server on Cisco DPC2203 and EPC2203 devices with firmware r1_customer_image allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCuv059...
How severe is CVE-2016-1327?
CVE-2016-1327 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2016-1327?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Dpc2203, Cisco Dpc2203 Cable Modem Firmware, Cisco Epc2203, Cisco Epc2203 Cable Modem Firmware.