Security Advisory

CVE-2019-6963

8.8
HIGH

Vulnerability Description

A heap-based buffer overflow in cosa_dhcpv4_dml.c in the RDK RDKB-20181217-1 CcspPandM module may allow attackers with login credentials to achieve remote code execution by crafting a long buffer in the "Comment" field of an IP reservation form in the admin panel. This is related to the CcspCommonLibrary module.
Published Date June 20, 2019
Official Source NIST NVD Advisory