Cisco ASA IKEv1/IKEv2 Buffer Overflow (CVE-2016-1287)

critical Tenable OT Security Plugin ID 505548

Synopsis

The remote OT asset is affected by a vulnerability.

Description

A vulnerability in the Internet Key Exchange (IKE) version 1 (v1) and IKE version 2 (v2) code of Cisco ASA Software could allow an unauthenticated, remote attacker to cause a reload of the affected system or to remotely execute code. The vulnerability is due to a buffer overflow in the affected code area. An attacker could exploit this vulnerability by sending crafted UDP packets to the affected system. An attacker could exploit this vulnerability by sending crafted UDP packets to the affected system. Only traffic directed to the affected system can be used to exploit this vulnerability. This vulnerability affects systems configured in routed and transparent firewall mode and in single or multiple context mode. This vulnerability can be triggered by IPv4 and IPv6 traffic. A valid IKE phase 1 SA is not required to exploit this vulnerability.

This plugin only works with Tenable.ot.
Please visit https://www.tenable.com/products/tenable-ot for more information.

Solution

Refer to the vendor advisory.

See Also

http://www.nessus.org/u?b63e3f2a

Plugin Details

Severity: Critical

ID: 505548

File Name: tenable_ot_cisco_CVE-2016-1287.nasl

Version: 1.1

Type: Remote

Family: Tenable.ot

Published: 7/20/2026

Updated: 7/20/2026

Supported Sensors: Tenable OT Security

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 57.12

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Vulnerability Information

CPE: cpe:/o:cisco:adaptive_security_appliance_software

Required KB Items: Tenable.ot/Cisco

Patch Publication Date: 2/10/2016

Vulnerability Publication Date: 2/10/2016

Reference Information

CVE: CVE-2016-1287

CWE: 119