Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a world-readable axess/opt/axXMPPHandler/config/xmpp_config.py file that stores hardcoded credentials.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ZyXEL CloudCNM SecuManager 信任管理问题漏洞
Vulnerability Description
ZyXEL CloudCNM SecuManager是中国台湾合勤(ZyXEL)公司的一套网络管理软件。该软件支持集中控制、设备管理和智能监控等功能。 ZyXEL CloudCNM SecuManager 3.1.0版本和3.1.1版本中存在信任管理问题漏洞,该漏洞源于存储有硬编码凭证的axess/opt/axXMPPHandler/config/xmpp_config.py文件为全局可读。攻击者可利用该漏洞获取用户凭证。
CVSS Information
N/A
Vulnerability Type
N/A