An issue was discovered on Zolo Halo devices via the Linkplay firmware. There is Zolo Halo LAN remote code execution. The Zolo Halo Bluetooth speaker had a GoAhead web server listening on the port 80. The /httpapi.asp endpoint of the GoAhead web server was also vulnerable to multiple command execution vulnerabilities.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T00:42:03.782Z

Reserved: 2019-08-21T00:00:00

Link: CVE-2019-15311

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-07-01T20:15:10.860

Modified: 2024-11-21T04:28:25.500

Link: CVE-2019-15311

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.