CVE-2011-3997

Opengear console server <2.2.1 - Auth Bypass

Title source: llm
STIX 2.1

Description

Opengear console servers with firmware before 2.2.1 allow remote attackers to bypass authentication, and modify settings or access connected equipment, via unspecified vectors.

References (2)

Core 2
Core References
Third Party Advisory third-party-advisory x_refsource_jvndb
http://jvndb.jvn.jp/jvndb/JVNDB-2011-000096
Third Party Advisory third-party-advisory x_refsource_jvn
http://jvn.jp/en/jp/JVN71349007/index.html

Scores

EPSS 0.0137
EPSS Percentile 68.4%

Details

CWE
CWE-287
Status published
Products (14)
opengear/acm5000_console_server
opengear/cm4000_console_server
opengear/im4004-5_console_server
opengear/im4200_console_server
opengear/img4000_console_server
opengear/kcs6000_rackside_console_server
opengear/opengear_console_server_firmware 2.0.4
opengear/opengear_console_server_firmware 2.0.4u1
opengear/opengear_console_server_firmware 2.0.6
opengear/opengear_console_server_firmware 2.0.8
... and 4 more
Published Nov 09, 2011
Tracked Since Feb 18, 2026