Alcatel-Lucent OmniPCX 7.0 VLAN information leak
SecurityVulns ID:7787
Description:Broadcast and multicast packets cross VLAN boundaries.
Affected:LUCENT : OmniPCX Enterprise Release 7.0
CVE:CVE-2007-2512 (Alcatel-Lucent IP-Touch Telephone running OmniPCX Enterprise 7.0 and later enables the mini switch by default, which allows attackers to gain access to the voice VLAN via daisy-chained systems.)
Original documentdocumentOliver Goebel, RUS-CERT 2007-06:01 (1380): Insecure Defaults in A-L OmniPCX 7.0 (11.06.2007)

