CVE-2020-15321: Critical severity zyxel cloud cnm secumanager vulnerability
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the axzyxel password for the livedbuser account.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-15321?
CVE-2020-15321 is a vulnerability in Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 that allows unauthorized access to the livedbuser account using the axzyxel password.
How severe is CVE-2020-15321?
CVE-2020-15321 has a severity rating of 9.8 (Critical).
Which software versions are affected by CVE-2020-15321?
Zyxel CloudCNM SecuManager versions 3.1.0 and 3.1.1 are affected by CVE-2020-15321.
How can I fix CVE-2020-15321?
To fix CVE-2020-15321, update Zyxel CloudCNM SecuManager to a version that is not affected, or follow the recommendations provided by the vendor.
Where can I find more information about CVE-2020-15321?
You can find more information about CVE-2020-15321 on the following references: [link 1](https://pierrekim.github.io/blog/2020-03-09-zyxel-secumanager-0day-vulnerabilities.html), [link 2](https://www.zyxel.com/support/vulnerabilities-of-CloudCNM-SecuManager.shtml).