CVE-2020-15347: Critical severity zyxel cloud cnm secumanager vulnerability
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the q6xV4aW8bQ4cfD-b password for the axiros account.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-15347?
CVE-2020-15347 is a vulnerability in Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 that allows unauthorized access to the axiros account using a hardcoded password.
How severe is CVE-2020-15347?
CVE-2020-15347 is considered critical with a severity value of 9.8.
Which software versions are affected by CVE-2020-15347?
CVE-2020-15347 affects Zyxel CloudCNM SecuManager versions 3.1.0 and 3.1.1.
How can I fix CVE-2020-15347?
To fix CVE-2020-15347, update Zyxel CloudCNM SecuManager to a version that does not have the hardcoded password.
Are there any references for CVE-2020-15347?
Yes, you can find references for CVE-2020-15347 at the following links: [link1](https://pierrekim.github.io/blog/2020-03-09-zyxel-secumanager-0day-vulnerabilities.html) [link2](https://www.zyxel.com/support/vulnerabilities-of-CloudCNM-SecuManager.shtml)