VAPT : To mitigate low risk vulnerability (ICMP Timestamp Request Remote Date Disclosure)

Hi Cambium,

Is it possible on future firmware release for ePMP family, you guys can disable/remove the ICMP Timestamp Request Remote Date Disclosure vulnerability.

You can refer ticket no #436397

Hi @WSS-Support ,

could you elaborate on how ePMP device can have such kind of vulnerability?
We don’t provide any kind of time sensitive authentication or so.

Hi Andrii,

End user uses their VAPT scanner to scac all ePMP devices installed on their sites. You can refer attached file

VAPT Summary.pdf (189.4 KB)

Most of vulnerabilities has been rectified.