Medium severity5.9NVD Advisory· Published Nov 7, 2017· Updated May 13, 2026
CVE-2017-2911
CVE-2017-2911
Description
An exploitable vulnerability exists in the remote control functionality of Circle with Disney running firmware 2.0.1. SSL certificates for specific domain names can cause the rclient daemon to accept a different certificate than intended. An attacker can host an HTTPS server with this certificate to trigger this vulnerability.
Affected products
2- Circle Media/Circlev5Range: firmware 2.0.1
- cpe:2.3:o:meetcircle:circle_with_disney_firmware:2.0.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.talosintelligence.com/vulnerability_reports/TALOS-2017-0418nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.