CVE-2020-15334: Medium severity zyxel cloud cnm secumanager vulnerability
Published Jun 26, 2020
·Updated
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 allows escape-sequence injection into the /var/log/axxmpp.log file.
Affected Software
2 affected components
Zyxel Cloud CNM SecuManager=3.1.0
Zyxel Cloud CNM SecuManager=3.1.1
Event History
Jun 26, 2020
CVE Published
via MITRE·03:02 PM
Data Sourced
via MITRE·03:02 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Zyxel CloudCNM SecuManager vulnerability?
The vulnerability ID for this Zyxel CloudCNM SecuManager vulnerability is CVE-2020-15334.
2
What is the affected software for this vulnerability?
The affected software for this vulnerability is Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1.
3
What is the severity of CVE-2020-15334?
The severity of CVE-2020-15334 is medium with a CVSS score of 5.3.
4
How does CVE-2020-15334 allow escape-sequence injection?
CVE-2020-15334 allows escape-sequence injection into the /var/log/axxmpp.log file.
5
How can I fix the CVE-2020-15334 vulnerability?
To fix the CVE-2020-15334 vulnerability, update Zyxel CloudCNM SecuManager to version 3.1.2 or later.