CVE-2011-3997

Opengear console servers with firmware before 2.2.1 allow remote attackers to bypass authentication, and modify settings or access connected equipment, via unspecified vectors.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:opengear:opengear_console_server_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:opengear:opengear_console_server_firmware:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:opengear:opengear_console_server_firmware:2.0.4u1:*:*:*:*:*:*:*
cpe:2.3:a:opengear:opengear_console_server_firmware:2.0.6:*:*:*:*:*:*:*
cpe:2.3:a:opengear:opengear_console_server_firmware:2.0.8:*:*:*:*:*:*:*
cpe:2.3:a:opengear:opengear_console_server_firmware:2.0.9:*:*:*:*:*:*:*
cpe:2.3:a:opengear:opengear_console_server_firmware:2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:opengear:opengear_console_server_firmware:2.1.0u1:*:*:*:*:*:*:*
OR cpe:2.3:h:opengear:acm5000_console_server:*:*:*:*:*:*:*:*
cpe:2.3:h:opengear:cm4000_console_server:*:*:*:*:*:*:*:*
cpe:2.3:h:opengear:im4004-5_console_server:*:*:*:*:*:*:*:*
cpe:2.3:h:opengear:im4200_console_server:*:*:*:*:*:*:*:*
cpe:2.3:h:opengear:img4000_console_server:*:*:*:*:*:*:*:*
cpe:2.3:h:opengear:kcs6000_rackside_console_server:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:31

Type Values Removed Values Added
References () http://jvn.jp/en/jp/JVN71349007/index.html - () http://jvn.jp/en/jp/JVN71349007/index.html -
References () http://jvndb.jvn.jp/jvndb/JVNDB-2011-000096 - () http://jvndb.jvn.jp/jvndb/JVNDB-2011-000096 -

Information

Published : 2011-11-09 20:55

Updated : 2024-11-21 01:31


NVD link : CVE-2011-3997

Mitre link : CVE-2011-3997

CVE.ORG link : CVE-2011-3997


JSON object : View

Products Affected

opengear

  • acm5000_console_server
  • cm4000_console_server
  • kcs6000_rackside_console_server
  • img4000_console_server
  • opengear_console_server_firmware
  • im4004-5_console_server
  • im4200_console_server
CWE
CWE-287

Improper Authentication