Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2011-3992


Buffer overflow in the SSH server functionality on the D-Link DES-3800 with firmware before 4.50B052, DWL-2100AP with firmware before 2.50RC548, and DWL-3200AP with firmware before 2.55RC549 allows remote attackers to execute arbitrary code or cause a denial of service via unspecified vectors.


Published

2011-11-03T17:55:01.717

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 10.0 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-119

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Hardware dlink des-3800 * Yes
Operating System dlink des-3800_firmware ≤ 4.50 Yes
Operating System dlink des-3800_firmware 4.00 Yes
Hardware dlink dwl-2100ap * Yes
Application dlink dwl-2100ap_firmware ≤ 2.50 Yes
Hardware dlink dwl-3200ap * Yes
Application dlink dwl-3200ap_firmware ≤ 2.55 Yes
Application dlink dwl-3200ap_firmware 2.40 Yes

References