Security Advisory

CVE-2019-15312

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-07-01 19:23:25
Last updated 2024-08-05 00:42:03
Assigner mitre
State PUBLISHED

Description

An issue was discovered on Zolo Halo devices via the Linkplay firmware. There is a Zolo Halo DNS rebinding attack. The device was found to be vulnerable to DNS rebinding. Combined with one of the many /httpapi.asp endpoint command-execution security issues, the DNS rebinding attack could allow an attacker to compromise the victim device from the Internet.