Weak Permissions in Zyxel CloudCNM SecuManager Affecting Security Posture
CVE-2020-15328
5.3MEDIUM
What is CVE-2020-15328?
The Zyxel CloudCNM SecuManager versions 3.1.0 and 3.1.1 exhibit a significant weakness in permission control regarding the /opt/axess/var/blobstorage/ directory. This weakness could allow unauthorized access to sensitive data, increasing the risk of data exposure and potential exploitation. Users of these versions should prioritize reviewing their permissions and implementing necessary security measures to safeguard their systems.