Cisco has issued an advisory warning its customers that products running its IOS software are vulnerable to attacks disclosed by the ShadowBrokers. The company has not developed a patch for the flaw, CVE-2016-6415, but has released IPS signatures and Snort rules as mitigations. The vulnerability is in IKEv1 packet processing and affects many Cisco products running IOS, IOS XE and all Cisco PIX firewalls. Cisco has not fixed a flaw in the SNMP implementation in its ASA firewall. Another exploit for Cisco gear was for a flaw patched in 2011 in the ASA command line interface.
Source: https://threatpost.com/cisco-warns-of-ios-flaw-vulnerable-to-shadowbrokers-attack/120668/

