CVE-2008-1197
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
05/09/2008
Last modified:
09/04/2025
Description
The Marvell driver for the Netgear WN802T Wi-Fi access point with firmware 1.3.16 on the Marvell 88W8361P-BEM1 chipset does not properly parse the SSID information element in an association request, which allows remote authenticated users to cause a denial of service (device reboot or hang) or possibly execute arbitrary code via a "Null SSID."
Impact
Base Score 2.0
6.30
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:h:marvell:88w8361w-bem1:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:netgear:wn802t:1.3.16:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/31770
- http://securityreason.com/securityalert/4215
- http://www.securityfocus.com/archive/1/495983/100/0/threaded
- http://www.securityfocus.com/bid/30976
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44918
- http://secunia.com/advisories/31770
- http://securityreason.com/securityalert/4215
- http://www.securityfocus.com/archive/1/495983/100/0/threaded
- http://www.securityfocus.com/bid/30976
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44918



