Beveiligingsadvies

CVE-2017-2890

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-11-07 16:00:00
Laatst bijgewerkt 2024-09-16 16:28:53
Toegewezen door talos
CVSS-score 9.9
Status PUBLISHED

Beschrijving

An exploitable vulnerability exists in the /api/CONFIG/restore functionality of Circle with Disney running firmware 2.0.1. Specially crafted network packets can cause an OS command injection. An attacker can send an HTTP request trigger this vulnerability.