← Back to home
ICSA-17-166-01  ·  Published 2017-06-15  ·  View on CISA ICS-CERT ↗

Cambium Networks ePMP

CVSS 7.6 HIGH

Risk Summary

ATTENTION: Remotely exploitable/low skill level to exploit.

Remediations

  • Cambium recommends that users with the affected products should update to firmware version 3.4-RC7 or newer. This update can be found by logging in at the following location:
  • Cambium also recommends that users edit default SNMP configuration. Affected models come set with the default values of “public” and “private” for RO (read only) and RW (read write) community strings. Cambium recommends changing this to a random string consisting of eight or more characters in length, including both upper and lower case letters and numbers for variability.

Affected Vendors

Cambium Networks

Affected Products (1)

Cambium Networks · ePMP vers:all/*

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more