CVE Published: 07/11/2017 |
CVE Updated: 16/09/2024 |
CVE Year: 2017 Source: talos |
Vendor: Circle Media |
Product: Circle Status : PUBLISHED
CVE-2017-2890 Description
An exploitable vulnerability exists in the /api/CONFIG/restore functionality of Circle with Disney running firmware 2.0.1. Specially crafted network packets can cause an OS command injection. An attacker can send an HTTP request trigger this vulnerability.