CVE-2024-35428
PoC —CVSS 3.1
7.1 high
EPSS
<1%p54
Published
()
Modified
Description
ZKTeco ZKBio CVSecurity 6.1.1 is vulnerable to Directory Traversal via BaseMediaFile. An authenticated user can delete local files from the server which can lead to DoS.
- Vendors
- zkteco
- Products
- zkbio cvsecurity
- Weakness
- CWE-22
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
In the news0 stories
No ingested article mentions this CVE yet.