First published: Fri Jun 26 2020(Updated: )
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a "Use of GET Request Method With Sensitive Query Strings" issue for /registerCpe requests.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zyxel CloudCNM SecuManager | =3.1.0 | |
Zyxel CloudCNM SecuManager | =3.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-15337 is a vulnerability found in Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 that allows the use of the GET request method with sensitive query strings.
CVE-2020-15337 has a severity rating of 5.3, which is considered medium.
CVE-2020-15337 affects Zyxel CloudCNM SecuManager versions 3.1.0 and 3.1.1.
The CWE ID for CVE-2020-15337 is 862.
To fix CVE-2020-15337, it is recommended to apply the latest security patches and updates provided by Zyxel.