CVE-2016-1445: Cisco Adaptive Security Appliance Software
Medium severity, CVSS 5.3. EPSS: 1.3% chance of exploitation in the next 30 days.
Cisco Adaptive Security Appliance (ASA) Software 8.2 through 9.4.3.3 allows remote attackers to bypass intended ICMP Echo Reply ACLs via vectors related to subtypes.
Affected products
- Cisco Adaptive Security Appliance Software: from 8.2, before 9.4.3.3 (fixed in 9.4.3.3); from 9.5.0, before 9.5.2.10 (fixed in 9.5.2.10); from 9.6.0, before 9.6.1.5 (fixed in 9.6.1.5)
Published 2016-07-12. Last modified 2026-06-17.