CVE-2006-3687
Published Jul 21, 2006
Last updated 2 years ago
Overview
- Description
- Stack-based buffer overflow in the Universal Plug and Play (UPnP) service in D-Link DI-524, DI-604 Broadband Router, DI-624, D-Link DI-784, WBR-1310 Wireless G Router, WBR-2310 RangeBooster G Router, and EBR-2310 Ethernet Broadband Router allows remote attackers to execute arbitrary code via a long M-SEARCH request to UDP port 1900.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:d-link:di-604_broadband_router:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FBCE20D2-7EA1-43D0-A6F5-24FD81818326" }, { "criteria": "cpe:2.3:h:d-link:di-784:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6154B777-7263-4AF6-AD24-589D7DD5B1CF" }, { "criteria": "cpe:2.3:h:d-link:ebr-2310_ethernet_broadband_router:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F1B18332-54DF-45C4-9D8E-95C4D2F598C8" }, { "criteria": "cpe:2.3:h:d-link:wbr-1310_wireless_g_router:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8D69AC68-EC86-4607-ABDB-75897907CAB1" }, { "criteria": "cpe:2.3:h:d-link:wbr-2310_rangebooster_g_router:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A57C817A-E969-4B1B-A898-C61A3D1EE662" }, { "criteria": "cpe:2.3:h:dlink:di-524:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "71AA4CB4-DE99-412C-B02E-57A5EC0802E8" }, { "criteria": "cpe:2.3:h:dlink:di-624:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BADE3827-C247-47A7-B7CF-DE7EC8F0CD3D" } ], "operator": "OR" } ] } ]