ZeroHour

CVE-2024-35428

PoC
CVSS 3.1
7.1 high
EPSS
<1%p54
Published
()
Modified
Description

ZKTeco ZKBio CVSecurity 6.1.1 is vulnerable to Directory Traversal via BaseMediaFile. An authenticated user can delete local files from the server which can lead to DoS.

Vendors
zkteco
Products
zkbio cvsecurity
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

In the news

No ingested article mentions this CVE yet.