Vulnerabilities (CVE)

Filtered by vendor Meetcircle Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-2864 1 Meetcircle 2 Circle With Disney, Circle With Disney Firmware 2022-06-07 7.5 HIGH 9.8 CRITICAL
An exploitable vulnerability exists in the generation of authentication token functionality of Circle with Disney. Specially crafted network packets can cause a valid authentication token to be returned to the attacker resulting in authentication bypass. An attacker can send a series of packets to trigger this vulnerability.
CVE-2017-12085 1 Meetcircle 2 Circle With Disney, Circle With Disney Firmware 2019-10-03 7.5 HIGH 9.8 CRITICAL
An exploitable routing vulnerability exists in the Circle with Disney cloud infrastructure. A specially crafted packet can make the Circle cloud route a packet to any arbitrary Circle device. An attacker needs network connectivity to the Internet to trigger this vulnerability.