ZeroHour

CVE-2017-12094

PoC
CVSS 3.0
6.5 medium
EPSS
<1%p57
Published
()
Modified
Description

An exploitable vulnerability exists in the WiFi Channel parsing of Circle with Disney running firmware 2.0.1. A specially crafted SSID can cause the device to execute arbitrary sed commands. An attacker needs to setup an access point reachable by the device to trigger this vulnerability.

Vendors
meetcircle
Products
circle with disney firmware
Weakness
CWE-77
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.