← Vulnerability feed

Vulnerability record · CVE-2007-5134 · published 27 September 2007

CVE-2007-5134: Cisco catalyst 6500 permissions and access controls vulnerability

Cisco · Catalyst 6500

Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might allow remote attackers to send packets to an interface for which network exposure was unintended.

5.0 CVSS 2.0 Medium EPSS 2.5% · top 16.0% CWE-264 · Permissions and access controls
5.0CVSS 2.0 base score
2.5%EPSS exploitation probability, 30 days
NoNot in CISA KEV
9Affected product versions listed by NVD
16References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might allow remote attackers to send packets to an interface for which network exposure was unintended.

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

9 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2007-5134 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2007-1257Cisco network analysis module improper input validation vulnerabilityThe Network Analysis Module (NAM) in Cisco Catalyst Series 6000, 6500, and 7600 allows remote attackers to execute arbitrary commands via certain SNM…EPSS 6.8%9.0CVE-2012-4661Cisco adaptive security appliance software memory buffer overflow vulnerabilityStack-based buffer overflow in the DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Mod…EPSS 4.0%7.9CVE-2011-3298Cisco adaptive security appliance software improper authentication vulnerabilityCisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services module in Cisco Catalyst 6500 series devices, with software 7.0 be…EPSS 0.86%7.8CVE-2012-4660Cisco adaptive security appliance software memory buffer overflow vulnerabilityThe SIP inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500…EPSS 1.8%7.8CVE-2012-3058Cisco adaptive security appliance software vulnerabilityCisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with softwar…EPSS 2.0%7.8CVE-2012-0355Cisco adaptive security appliance software improper input validation vulnerabilityCisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with softwar…EPSS 2.7%7.8CVE-2012-0356Cisco firewall services module software improper input validation vulnerabilityCisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with softwar…EPSS 2.1%7.8CVE-2011-3296Cisco firewall services module software vulnerabilityCisco Firewall Services Module (aka FWSM) 3.1 before 3.1(21), 3.2 before 3.2(22), 4.0 before 4.0(16), and 4.1 before 4.1(7), when IPv6 is used, allow…EPSS 1.8%

Source: NIST National Vulnerability Database (record CVE-2007-5134), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.