Vulnerabilities > Meetcircle > Circle With Disney Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2017-11-07 CVE-2017-2917 OS Command Injection vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the notifications functionality of Circle with Disney running firmware 2.0.1.
network
low complexity
meetcircle CWE-78
8.8
2017-11-07 CVE-2017-2916 Link Following vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the /api/CONFIG/restore functionality of Circle with Disney running firmware 2.0.1.
network
low complexity
meetcircle CWE-59
8.8
2017-11-07 CVE-2017-2915 Unspecified vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the WiFi configuration functionality of Circle with Disney running firmware 2.0.1.
low complexity
meetcircle
8.0
2017-11-07 CVE-2017-2914 Improper Authentication vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable authentication bypass vulnerability exists in the API daemon of Circle with Disney running firmware 2.0.1.
network
high complexity
meetcircle CWE-287
8.1
2017-11-07 CVE-2017-2898 Race Condition vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the signature verification of the firmware update functionality of Circle with Disney.
network
high complexity
meetcircle CWE-362
7.5
2017-11-07 CVE-2017-2890 OS Command Injection vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the /api/CONFIG/restore functionality of Circle with Disney running firmware 2.0.1.
network
low complexity
meetcircle CWE-78
8.8
2017-11-07 CVE-2017-2889 Resource Exhaustion vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable Denial of Service vulnerability exists in the API daemon of Circle with Disney running firmware 2.0.1.
network
low complexity
meetcircle CWE-400
7.5
2017-11-07 CVE-2017-2884 Resource Exhaustion vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the user photo update functionality of Circle with Disney running firmware 2.0.1.
network
low complexity
meetcircle CWE-400
7.5
2017-11-07 CVE-2017-2883 Unspecified vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the database update functionality of Circle with Disney running firmware 2.0.1.
network
high complexity
meetcircle
8.1
2017-11-07 CVE-2017-2882 Unspecified vulnerability in Meetcircle Circle With Disney Firmware 2.0.1
An exploitable vulnerability exists in the servers update functionality of Circle with Disney running firmware 2.0.1.
network
high complexity
meetcircle
8.1