CVE Published: 07/11/2017 |
CVE Updated: 16/09/2024 |
CVE Year: 2017 Source: talos |
Vendor: Circle Media |
Product: Circle Status : PUBLISHED
CVE-2017-2912 Description
An exploitable vulnerability exists in the remote control functionality of Circle with Disney running firmware 2.0.1. SSL certificates for specific domain names can cause the goclient daemon to accept a different certificate than intended. An attacker can host an HTTPS server with this certificate to trigger this vulnerability.