« Volver al listado

CVE-2011-3992

Estado: ModificadaAlta (10)—

Buffer overflow in the SSH server functionality on the D-Link DES-3800 with firmware before 4.50B052, DWL-2100AP with firmware before 2.50RC548, and DWL-3200AP with firmware before 2.55RC549 allows remote attackers to execute arbitrary code or cause a denial of service via unspecified vectors.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (6)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2011-3992",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 10,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": false,
        "impactScore": 10,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "vultures@jpcert.or.jp",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2011-11-03T17:55:01.717",
  "references": [
    {
      "url": "http://jvn.jp/en/jp/JVN72640744/index.html",
      "source": "vultures@jpcert.or.jp"
    },
    {
      "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000092",
      "source": "vultures@jpcert.or.jp"
    },
    {
      "url": "http://osvdb.org/76628",
      "source": "vultures@jpcert.or.jp"
    },
    {
      "url": "http://www.dlink-jp.com/page/sc/F/security_info20111028.html",
      "source": "vultures@jpcert.or.jp"
    },
    {
      "url": "http://www.securityfocus.com/bid/50405",
      "source": "vultures@jpcert.or.jp"
    },
    {
      "url": "http://jvn.jp/en/jp/JVN72640744/index.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000092",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/76628",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.dlink-jp.com/page/sc/F/security_info20111028.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/50405",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-119"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Buffer overflow in the SSH server functionality on the D-Link DES-3800 with firmware before 4.50B052, DWL-2100AP with firmware before 2.50RC548, and DWL-3200AP with firmware before 2.55RC549 allows remote attackers to execute arbitrary code or cause a denial of service via unspecified vectors."
    },
    {
      "lang": "es",
      "value": "Desbordamiento de búfer en la funcionalidad de servidor SSH en D-Link DES-3800 con firmware  anterior a v4.50B052, DWL-2100AP con firmware anterior a v2.50RC548, y DWL-3200AP con firmware anterior a v2.55RC549 permite a atacantes remotos ejecutar código de su elección o causar una denegación de servicio a través de vectores desconocidos."
    }
  ],
  "lastModified": "2026-06-16T23:34:16.257",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:dlink:des-3800:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BFFA8FFC-3CCD-47C1-8B6B-7071A283D5A0"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:dlink:des-3800_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "41386104-F07D-4EB6-ABC2-02F3A578BE2F",
              "versionEndIncluding": "4.50"
            },
            {
              "criteria": "cpe:2.3:o:dlink:des-3800_firmware:4.00:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "06B0C1F9-4A48-4CA6-9209-688E0D1D5353"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:dlink:dwl-2100ap:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5CF115B9-732C-4E3F-8CDF-485586B9B3E3"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:dlink:dwl-2100ap_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "705CD51A-C49B-4B93-A5EB-9BE37D0A93C9",
              "versionEndIncluding": "2.50"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:dlink:dwl-3200ap:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CCF540F8-D43F-48AE-A3E5-5BEF52494021"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:dlink:dwl-3200ap_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D69E7AC5-DE24-457E-A8EF-BA5C3F6A327F",
              "versionEndIncluding": "2.55"
            },
            {
              "criteria": "cpe:2.3:a:dlink:dwl-3200ap_firmware:2.40:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D7FD3A76-BBAC-4AE8-9C3B-5A1F3968E1B1"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "vultures@jpcert.or.jp"
}