CVE-2016-9205: Cisco IOS XR
High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.
A vulnerability in the HTTP 2.0 request handling code of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the Event Management Service daemon (emsd) to crash, resulting in a denial of service (DoS) condition. More Information: CSCvb14425. Known Affected Releases: 6.1.1.BASE. Known Fixed Releases: 6.1.2.6i.MGBL 6.1.22.9i.MGBL 6.2.1.14i.MGBL.
Affected products
- Cisco IOS XR: version 6.1.1 only
Published 2016-12-14. Last modified 2026-06-17.