CVE-2016-6372

high
Published 2016-10-28 ยท Modified 2026-05-06
CVSS v3
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
7.5

Description

A vulnerability in the email message and content filtering for malformed Multipurpose Internet Mail Extensions (MIME) headers of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) and Web Security Appliances (WSA) could allow an unauthenticated, remote attacker to bypass the filtering functionality of the targeted device. Emails that should have been quarantined could instead be processed. Affected Products: This vulnerability affects all releases prior to the first fixed release of Cisco AsyncOS Software for Cisco ESA and Cisco WSA on both virtual and hardware appliances that are configured with message or content filters to scan incoming email attachments. More Information: CSCuy54740, CSCuy75174. Known Affected Releases: 9.7.1-066 9.5.0-575 WSA10.0.0-000. Known Fixed Releases: 10.0.0-125 9.1.1-038 9.7.2-047.

Predictions

Exploit likelihood
83%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Application impact

VendorProductVersionsFixed
cisco ciscoemail_security_appliance8.0.1-023
cisco ciscoemail_security_appliance8.0_base
cisco ciscoemail_security_appliance8.5.0-000
cisco ciscoemail_security_appliance8.5.0-er1-198
cisco ciscoemail_security_appliance8.5.6-052
cisco ciscoemail_security_appliance8.5.6-073
cisco ciscoemail_security_appliance8.5.6-074
cisco ciscoemail_security_appliance8.5.6-106
cisco ciscoemail_security_appliance8.5.6-113
cisco ciscoemail_security_appliance8.5.7-042
cisco ciscoemail_security_appliance8.6.0
cisco ciscoemail_security_appliance8.6.0-011
cisco ciscoemail_security_appliance8.9.0
cisco ciscoemail_security_appliance8.9.1-000
cisco ciscoemail_security_appliance8.9.2-032
cisco ciscoemail_security_appliance9.0.0
cisco ciscoemail_security_appliance9.0.0-212
cisco ciscoemail_security_appliance9.0.0-461
cisco ciscoemail_security_appliance9.0.5-000
cisco ciscoemail_security_appliance9.1.0
cisco ciscoemail_security_appliance9.1.0-011
cisco ciscoemail_security_appliance9.1.0-032
cisco ciscoemail_security_appliance9.1.0-101
cisco ciscoemail_security_appliance9.1.1-000
cisco ciscoemail_security_appliance9.4.0
cisco ciscoemail_security_appliance9.4.4-000
cisco ciscoemail_security_appliance9.5.0-000
cisco ciscoemail_security_appliance9.5.0-201
cisco ciscoemail_security_appliance9.6.0-000
cisco ciscoemail_security_appliance9.6.0-042
cisco ciscoemail_security_appliance9.6.0-051
cisco ciscoemail_security_appliance9.7.0-125
cisco ciscoemail_security_appliance9.7.1-066
cisco ciscoemail_security_appliance9.9.6-026
cisco ciscoemail_security_appliance9.9_base
cisco ciscoweb_security_appliance5.6.0-623
cisco ciscoweb_security_appliance6.0.0-000
cisco ciscoweb_security_appliance7.1.0
cisco ciscoweb_security_appliance7.1.1
cisco ciscoweb_security_appliance7.1.2
cisco ciscoweb_security_appliance7.1.3
cisco ciscoweb_security_appliance7.1.4
cisco ciscoweb_security_appliance7.5.0-000
cisco ciscoweb_security_appliance7.5.0-825
cisco ciscoweb_security_appliance7.5.1-000
cisco ciscoweb_security_appliance7.5.2-000
cisco ciscoweb_security_appliance7.5.2-hp2-303
cisco ciscoweb_security_appliance7.7.0-000
cisco ciscoweb_security_appliance7.7.0-608
cisco ciscoweb_security_appliance7.7.1-000
cisco ciscoweb_security_appliance7.7.5-835
cisco ciscoweb_security_appliance8.0.0-000
cisco ciscoweb_security_appliance8.0.5
cisco ciscoweb_security_appliance8.0.6
cisco ciscoweb_security_appliance8.0.6-078
cisco ciscoweb_security_appliance8.0.6-119
cisco ciscoweb_security_appliance8.0.7
cisco ciscoweb_security_appliance8.0.7-142
cisco ciscoweb_security_appliance8.0.8-mr-113
cisco ciscoweb_security_appliance8.5.0-497
cisco ciscoweb_security_appliance8.5.0.000
cisco ciscoweb_security_appliance8.5.1-021
cisco ciscoweb_security_appliance8.5.2-024
cisco ciscoweb_security_appliance8.5.2-027
cisco ciscoweb_security_appliance8.5.3-055
cisco ciscoweb_security_appliance8.8.0-000
cisco ciscoweb_security_appliance8.8.0-085
cisco ciscoweb_security_appliance9.0.0-193
cisco ciscoweb_security_appliance9.0_base
cisco ciscoweb_security_appliance9.1.0-000
cisco ciscoweb_security_appliance9.1.0-070
cisco ciscoweb_security_appliance9.1_base
cisco ciscoweb_security_appliance9.5.0-235
cisco ciscoweb_security_appliance9.5.0-284
cisco ciscoweb_security_appliance9.5.0-444
cisco ciscoweb_security_appliance9.5_base
cisco ciscoweb_security_appliance_8.0.5hot_patch_1

References

CWEs

CWE-20

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.