Cisco Catalyst 6500 and Cisco 7600 Loopback Access Control Bypass Vulnerability
BID:25822
Info
Cisco Catalyst 6500 and Cisco 7600 Loopback Access Control Bypass Vulnerability
| Bugtraq ID: | 25822 |
| Class: | Access Validation Error |
| CVE: |
CVE-2007-5134 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 26 2007 12:00AM |
| Updated: | May 07 2015 05:35PM |
| Credit: | The vendor credits Lee E. Rian with the discovery of this vulnerability. |
| Vulnerable: |
Cisco Catalyst 7600 3.1 (1a)WS-X6380-NAM Cisco Catalyst 7600 3.1 (1a)WS-SVC-NAM-2 Cisco Catalyst 7600 3.1 (1a)WS-SVC-NAM-1 Cisco Catalyst 7600 2.2 (1a)WS-SVC-NAM-2 Cisco Catalyst 7600 2.2 (1a)WS-SVC-NAM-1 Cisco Catalyst 7600 2.1 (2)WS-X6380-NAM Cisco Catalyst 7600 Sup720/MSFC3 Cisco Catalyst 7600 Sup2/MSFC2 Cisco Catalyst 6500 7.6 (1) Cisco Catalyst 6500 7.5 (1) Cisco Catalyst 6500 5.4.1 Cisco Catalyst 6500 3.1 (1a)WS-X6380-NAM Cisco Catalyst 6500 3.1 (1a)WS-SVC-NAM-2 Cisco Catalyst 6500 3.1 (1a)WS-SVC-NAM-1 Cisco Catalyst 6500 2.2 (1a)WS-SVC-NAM-2 Cisco Catalyst 6500 2.2 (1a)WS-SVC-NAM-1 Cisco Catalyst 6500 2.1 (2)WS-X6380-NAM Cisco Catalyst 6500 Cisco Catalyst 7600 |
| Not Vulnerable: | |
Discussion
Cisco Catalyst 6500 and Cisco 7600 Loopback Access Control Bypass Vulnerability
Cisco Catalyst 6500 and Cisco 7600 devices are prone to a vulnerability that may allow attackers to bypass access control lists (ACL).
Attackers may leverage this issue to access a device from an unauthorized remote location; this may aid in further attacks.
Cisco Catalyst 6500 and Cisco 7600 devices are prone to a vulnerability that may allow attackers to bypass access control lists (ACL).
Attackers may leverage this issue to access a device from an unauthorized remote location; this may aid in further attacks.
Exploit / POC
Cisco Catalyst 6500 and Cisco 7600 Loopback Access Control Bypass Vulnerability
To exploit this issue, attackers may use readily available network utilities.
To exploit this issue, attackers may use readily available network utilities.
Solution / Fix
Cisco Catalyst 6500 and Cisco 7600 Loopback Access Control Bypass Vulnerability
Solution:
The vendor has released patches to address this issue. Please see the references for more information.
Solution:
The vendor has released patches to address this issue. Please see the references for more information.
References
Cisco Catalyst 6500 and Cisco 7600 Loopback Access Control Bypass Vulnerability
References:
References: