Sensitive Query Strings Issue in Zyxel CloudCNM SecuManager
CVE-2020-15337
5.3MEDIUM
What is CVE-2020-15337?
Zyxel CloudCNM SecuManager versions 3.1.0 and 3.1.1 are susceptible to a vulnerability that arises from the improper use of the GET request method, allowing sensitive query strings to be exposed during the /registerCpe requests. This can potentially lead to unauthorized access to sensitive information, highlighting the need for secure coding practices and better data handling mechanisms in web applications.