Cambium ePMP1000 3.1-3.5-RC7 Command Injection

This Metasploit module exploits an OS Command Injection vulnerability in Cambium ePMP1000 device management portal. It requires any one of the following login credentials – admin/admin, installer/installer, home/home – to set up a reverse netcat shell. The module has been tested on versions 3.1-3.5-RC7.
Source: Cambium ePMP1000 3.1-3.5-RC7 Command Injection