CVE-2017-5262

In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, the SNMP read-only (RO) community string has access to sensitive information by OID reference.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8 HIGH
ADJACENT_NETWORK
LOW
LOW
CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
rapid7CNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 91%
VendorProductVersion
cambiumnetworkscnpilot_r190v_firmware
𝑥
≤ 4.3.2-r4
cambiumnetworkscnpilot_e410_firmware
𝑥
≤ 4.3.2-r4
cambiumnetworkscnpilot_r190n_firmware
𝑥
≤ 4.3.2-r4
cambiumnetworkscnpilot_e400_firmware
𝑥
≤ 4.3.2-r4
cambiumnetworkscnpilot_e600_firmware
𝑥
≤ 4.3.2-r4
𝑥
= Vulnerable software versions