Medium severity6.8NVD Advisory· Published Jun 21, 2017· Updated May 13, 2026
CVE-2017-7918
CVE-2017-7918
Description
An Improper Access Control issue was discovered in Cambium Networks ePMP. After a valid user has used SNMP configuration export, an attacker is able to remotely trigger device configuration backups using specific MIBs. These backups lack proper access control and may allow access to sensitive information and possibly allow for configuration changes.
Affected products
4- cpe:2.3:o:cambium_networks:epmp_1000_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cambium_networks:epmp_1000_hotspot_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cambium_networks:epmp_2000_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cambium_networks:epmp_elevate_firmware:-:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.securityfocus.com/bid/99083nvdThird Party AdvisoryUS Government Resource
- ics-cert.us-cert.gov/advisories/ICSA-17-166-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.