CVE-2020-15323Hard-coded Credentials in Zyxel Cloudcnm Secumanager

Severity
9.8CRITICALNVD
EPSS
0.5%
top 33.56%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 29
Latest updateMay 24

Description

Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the cloud1234 password for the a1@chopin account default credentials.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDzyxel/cloudcnm_secumanager3.1.0, 3.1.1+1

🔴Vulnerability Details

2
GHSA
GHSA-v3m3-hp7j-gg84: Zyxel CloudCNM SecuManager 32022-05-24
CVEList
CVE-2020-15323: Zyxel CloudCNM SecuManager 32020-06-29
CVE-2020-15323 — Hard-coded Credentials in Zyxel | cvebase