CVE-2020-15324
Description
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a world-readable axess/opt/axXMPPHandler/config/xmpp_config.py file that stores hardcoded credentials.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 stores hardcoded credentials in a world-readable configuration file.
Vulnerability
Zyxel CloudCNM SecuManager versions 3.1.0 and 3.1.1 contain a world-readable configuration file at axess/opt/axXMPPHandler/config/xmpp_config.py that stores hardcoded credentials [1]. The file is readable by any user on the system, leaking credentials used for XMPP (Jabber) service authentication. This is one of multiple hardcoded credential issues in the product [1].
Exploitation
An attacker with local shell access (e.g., via a different vulnerability or authorized access) can simply read the file to obtain the credentials. No authentication or user interaction is required beyond local access to the filesystem. The attacker does not need network access to the XMPP service itself, as the credentials are stored in plaintext on disk [1].
Impact
Successful reading of the stored credentials allows the attacker to authenticate to the XMPP service as a privileged user, potentially enabling further lateral movement within the SecuManager system. The credentials may also be reused for other services if the same password is employed elsewhere [1]. The impact includes unauthorized access and potential escalation of privileges depending on the role of the XMPP account.
Mitigation
Zyxel has not released a fix for this specific CVE as of the publication date. Affected versions 3.1.0 and 3.1.1 remain vulnerable. Administrators should restrict local filesystem access to trusted users and monitor for unauthorized access. The product may be end-of-life; consult Zyxel support for upgrade options [1].
AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- Zyxel/CloudCNM SecuManagerdescription
- Range: >=3.1.0, <=3.1.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- pierrekim.github.io/blog/2020-03-09-zyxel-secumanager-0day-vulnerabilities.htmlmitrex_refsource_MISC
- www.zyxel.com/support/vulnerabilities-of-CloudCNM-SecuManager.shtmlmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.