CVE-2020-15327: High severity zyxel cloud cnm secumanager vulnerability
Published Jun 26, 2020
·Updated
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 uses ZODB storage without authentication.
Affected Software
2 affected components
Zyxel Cloud CNM SecuManager=3.1.0
Zyxel Cloud CNM SecuManager=3.1.1
Event History
Jun 26, 2020
CVE Published
via MITRE·02:47 PM
Data Sourced
via MITRE·02:47 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2020-15327.
2
What is the severity of CVE-2020-15327?
The severity of CVE-2020-15327 is high with a score of 7.5.
3
Which software versions are affected by CVE-2020-15327?
Zyxel CloudCNM SecuManager versions 3.1.0 and 3.1.1 are affected by CVE-2020-15327.
4
What is the impact of CVE-2020-15327?
CVE-2020-15327 allows unauthorized access to Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 via ZODB storage without authentication.
5
Are there any fixes available for CVE-2020-15327?
At the moment, there is no official fix available for CVE-2020-15327. It is recommended to contact Zyxel for further assistance.