CVE-2017-5254 impacts Cambium Networks ePMP 1000 and 2000 series devices running firmware version 3.5 and prior, allowing non-administrative users ('installer' and 'home') to change passwords for other accounts, including the administrator, by bypassing a client-side protection. This vulnerability carries a CVSS score of 8.8 (HIGH), indicating a critical risk due to its network-based attack vector, low attack complexity, and high potential for confidentiality, integrity, and availability compromise. While not listed on CISA's KEV, a Metasploit module exists for exploitation, and it has garnered community discussion and media coverage, suggesting awareness and potential for exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.5CPE matchmatch criteria | cpe:2.3:o:cambiumnetworks:epmp_1000_firmware:*:*:*:*:*:*:*:* | ||
<= 3.5CPE matchmatch criteria | cpe:2.3:o:cambiumnetworks:epmp_2000_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.