CVE-2007-1257

CRITICAL

The Network Analysis Module (NAM) in Cisco Catalyst Series 6000, 6500, and 7600 allows remote attackers to execute arbitrary commands via certain SNMP packets that are spoofed from the NAM's own IP...

Affects 10 products across 1 vendor.

BCS7.74
CVSS 2.010.0
EPSS6.8%
Percentile94th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity.
CWE Weakness Definitions
CWE-20: Improper Input Validation

Software does not validate or incorrectly validates input, allowing attackers to craft data processed in unintended ways.

Related Attack Patterns (CAPEC)
CAPEC-3 Using Leading 'Ghost' Character Sequences to Bypass Input Filters
via CWE-20
CAPEC-7 Blind SQL Injection
via CWE-20
CAPEC-8 Buffer Overflow in an API Call
via CWE-20
CAPEC-9 Buffer Overflow in Local Command-Line Utilities
via CWE-20
CAPEC-10 Buffer Overflow via Environment Variables
via CWE-20
Show all 51
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20
via CWE-20

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ AI Analysis — automated analysis, not human-reviewed

This vulnerability was disclosed in 2007. A critical vulnerability affects Cisco systems (CVE-2007-1257). No public exploit code is currently available. Isolate affected systems if patching is not feasible.

BSID: BS-2007-GLOBAL-017314-C • Model: rule-based-v1 • Confidence: MEDIUM

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2007-1257?
This vulnerability was disclosed in 2007. A critical vulnerability affects Cisco systems (CVE-2007-1257). No public exploit code is currently available. Isolate affected systems if patching is not feasible.
What is the CVSS score for CVE-2007-1257?
CVE-2007-1257 has CVSS 10.0 (Critical). Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C. EPSS: 6.8%.
Is CVE-2007-1257 actively exploited?
No confirmed active exploitation of CVE-2007-1257 as of 2026-09-25.
How do I remediate CVE-2007-1257?
Priority: MEDIUM.
What systems are affected by CVE-2007-1257?
CVE-2007-1257 affects: Cisco, Cisco, Cisco, Cisco, Cisco, Cisco, Cisco, Cisco.
Vulnerability Details
CVE IDCVE-2007-1257
BSIDBS-2007-GLOBAL-017314-C BreachSpider Global ID
CVSS VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Published2007-03-03
Last Modified2026-06-16
ICS Relevance75%
Weakness (CWE)
Domains
NETWORK-INFRA
SourceNVD
Official Description

The Network Analysis Module (NAM) in Cisco Catalyst Series 6000, 6500, and 7600 allows remote attackers to execute arbitrary commands via certain SNMP packets that are spoofed from the NAM's own IP address.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

Vulnerability details: The Network Analysis Module (NAM) in Cisco Catalyst Series 6000, 6500, and 7600 allows remote attackers to execute arbitrary commands via certain SNMP packets that are spoofed from the NAM's own IP address. CVSS vector: AV:N/AC:L/Au:N/C:C/I:C/A:C.

Exploitation Likelihood: LOW

Affected Products
VendorProductFixed Version
Cisco Catalyst 6500 Ws-Svc-Nam-1 —
Cisco Catalyst 6500 Ws-Svc-Nam-2 —
Cisco Catalyst 6500 Ws-X6380-Nam —
Cisco Catalyst 7600 Ws-Svc-Nam-1 —
Cisco Catalyst 7600 Ws-Svc-Nam-2 —
Cisco Catalyst 7600 Ws-X6380-Nam —
Cisco Catalyst 6000 Ws-Svc-Nam-1 —
Cisco Catalyst 6000 Ws-Svc-Nam-2 —
Cisco Catalyst 6000 Ws-X6380-Nam —
Cisco Network Analysis Module —
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: September 2026 | Threat Age: 7148 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
AI Enrichment Record — provenance & audit hash
Modelrule-based-v1
ConfidenceMEDIUM
Enriched At2026-05-24
SHA-512 Audit Hash5b9aa3459c571a63de410de2e0328de9fe73d2779177ac1005dc5719d16109ea2b84a5a6a3460d010872bd2624dfdfdb81f37aa0d872b292eff3b9db0d17f604
Related CVEs affecting Cisco
CVE-2007-4241 10.0 Buffer overflow in ldcconn in Hewlett-Packard (HP) Controller for Cisco Local... CVE-2007-2036 10.0 The SNMP implementation in the Cisco Wireless LAN Controller (WLC) before 200... CVE-2009-4912 10.0 Cisco Adaptive Security Appliances (ASA) 5580 series devices with software be... CVE-2009-4919 10.0 Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5580 series devic... CVE-2000-1055 10.0 Buffer overflow in CiscoSecure ACS Server 2.4(2) and earlier allows remote at...
View all Cisco CVEs →

Critical Severity - Know Your Exposure

A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Create a free account →