CVE-2016-1380: Cisco Web Security Appliance

High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.

Cisco AsyncOS 8.0 before 8.0.6-119 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (proxy-process hang) via a crafted HTTP POST request, aka Bug ID CSCuo12171.

Affected products

  • Cisco Web Security Appliance: version 8.0.0-000 only; version 8.0.5 only; version 8.0.6 only; version 8.0.6-078 only; version 8.0.6-119 only; version 8.0.7 only; …

Published 2016-05-25. Last modified 2026-06-17.