Vulnerability Details CVE-2016-6443
A vulnerability in the Cisco Prime Infrastructure and Evolved Programmable Network Manager SQL database interface could allow an authenticated, remote attacker to impact system confidentiality by executing a subset of arbitrary SQL queries that can cause product instability. More Information: CSCva27038, CSCva28335. Known Affected Releases: 3.1(0.128), 1.2(400), 2.0(1.0.34A).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.019
EPSS Ranking 82.3%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2016-6443
-
cpe:2.3:a:cisco:evolved_programmable_network_manager:1.2
-
cpe:2.3:a:cisco:evolved_programmable_network_manager:2.0
-
cpe:2.3:a:cisco:prime_infrastructure:1.2
-
cpe:2.3:a:cisco:prime_infrastructure:1.2.0.103
-
cpe:2.3:a:cisco:prime_infrastructure:1.2.1
-
cpe:2.3:a:cisco:prime_infrastructure:1.3
-
cpe:2.3:a:cisco:prime_infrastructure:1.3.0.20
-
cpe:2.3:a:cisco:prime_infrastructure:1.4
-
cpe:2.3:a:cisco:prime_infrastructure:1.4.0.45
-
cpe:2.3:a:cisco:prime_infrastructure:1.4.1
-
cpe:2.3:a:cisco:prime_infrastructure:1.4.2
-
cpe:2.3:a:cisco:prime_infrastructure:2.0
-
cpe:2.3:a:cisco:prime_infrastructure:2.1.0
-
cpe:2.3:a:cisco:prime_infrastructure:2.2
-
cpe:2.3:a:cisco:prime_infrastructure:2.2(2)
-
cpe:2.3:a:cisco:prime_infrastructure:3.0
-
cpe:2.3:a:cisco:prime_infrastructure:3.1
-
cpe:2.3:a:cisco:prime_infrastructure:3.1.1