CVE-2007-5134

Cisco Catalyst 6500 and 7600 - Unintended Network Exposure via EOBC 127/8 IP Addresses

Title source: llm
STIX 2.1

Description

Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might allow remote attackers to send packets to an interface for which network exposure was unintended.

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1018743
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/36826
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26988
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/3276
Mailing List mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2007/Sep/0573.html
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/25822
Patch vendor-advisory x_refsource_cisco
http://www.cisco.com/warp/public/707/cisco-sr-20070926-lb.shtml
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1018742

Scores

EPSS 0.0248
EPSS Percentile 82.9%

Details

CWE
CWE-264
Status published
Products (17)
cisco/catalyst_6500
cisco/catalyst_6500_ws-svc-nam-1 2.2\(1a\)
cisco/catalyst_6500_ws-svc-nam-1 3.1\(1a\)
cisco/catalyst_6500_ws-svc-nam-2 2.2\(1a\)
cisco/catalyst_6500_ws-svc-nam-2 3.1\(1a\)
cisco/catalyst_6500_ws-x6380-nam 2.1\(2\)
cisco/catalyst_6500_ws-x6380-nam 3.1\(1a\)
cisco/catalyst_7600 (3 CPE variants)
cisco/catalyst_7600_ws-svc-nam-1 2.2\(1a\)
cisco/catalyst_7600_ws-svc-nam-1 3.1\(1a\)
... and 7 more
Published Sep 27, 2007
Tracked Since Feb 18, 2026