CVE-2016-1345: Cisco ASA With Firepower Services

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware protection via crafted fields in HTTP headers, aka Bug ID CSCux22726.

Affected products

  • Cisco ASA With Firepower Services: version 5.4.0 only; version 5.4.0.1 only; version 5.4.0.2 only; version 5.4.0.3 only; version 5.4.0.4 only; version 5.4.0.5 only; …
  • Cisco Firesight System Software: version 5.4.0 only; version 5.4.0.1 only; version 5.4.0.2 only; version 5.4.0.3 only; version 5.4.0.4 only; version 5.4.0.5 only; …

Published 2016-04-01. Last modified 2026-06-17.