CVE-2016-6410: Cisco IOS
Medium severity, CVSS 6.5. EPSS: 1.4% chance of exploitation in the next 30 days.
The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is enabled, allows remote authenticated users to read arbitrary files via unspecified vectors, aka Bug ID CSCuy19856.
Affected products
- Cisco IOS: version 15.5(2)t only
Published 2016-09-24. Last modified 2026-06-17.