CVE-2020-15315: Zyxel Cloudcnm Secumanager

Medium severity, CVSS 5.9. EPSS: 1% chance of exploitation in the next 30 days.

Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account within the /opt/axess chroot directory tree.

Affected products

  • Zyxel Cloudcnm Secumanager: version 3.1.0 only; version 3.1.1 only

Published 2020-06-29. Last modified 2026-06-17.