CVE-2017-5259

In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, an undocumented, root-privilege administration web shell is available using the HTTP path https://<device-ip-or-hostname>/adm/syscmd.asp.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
rapid7CNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 97%
VendorProductVersion
cambiumnetworkscnpilot_r190v_firmware
𝑥
≤ 4.3.2-r4
cambiumnetworkscnpilot_e410_firmware
𝑥
≤ 4.3.2-r4
cambiumnetworkscnpilot_r190n_firmware
𝑥
≤ 4.3.2-r4
cambiumnetworkscnpilot_e400_firmware
𝑥
≤ 4.3.2-r4
cambiumnetworkscnpilot_e600_firmware
𝑥
≤ 4.3.2-r4
𝑥
= Vulnerable software versions