CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. Its EPSS score suggests a 39.2% probability of exploitation in the next 30 days.
CVE
CVE-2017-5259
Severity
HIGH
CVSS
8.8
EPSS
39.18%
Original NVD Description
In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, an undocumented, root-privilege administration web shell is available using the HTTP path https://<device-ip-or-hostname>/adm/syscmd.asp.
Related CVEs
Other vulnerabilities affecting the same vendor(s)