CVE-2020-15341

HIGH

Zyxel CloudCNM SecuManager <3.1.1 - Unauthenticated API

Title source: llm

Description

Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has an unauthenticated update_all_realm_license API.

Scores

CVSS v3 7.5
EPSS 0.0031
EPSS Percentile 53.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-522
Status published

Affected Products (2)

zyxel/cloudcnm_secumanager
zyxel/cloudcnm_secumanager

Timeline

Published Sep 29, 2022
Tracked Since Feb 18, 2026