HIGH
A shell injection issue in cosa_wifi_apis.c in the RDK RDKB-20181217-1 CcspWifiAgent module allows attackers with login credentials to execute arbitrary shell commands under the CcspWifiSsp process (running as root) if the platform was compiled with the ENABLE_FEATURE_MESHWIFI macro
Published Jun 20, 2019
7.5
HIGHCVSS 3.0
EPSS 1.59%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.