Vulnerabilities (CVE)

Filtered by vendor Zkteco Subscribe
Filtered by product Zkbiosecurity V5000
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-36635 1 Zkteco 1 Zkbiosecurity V5000 2023-12-10 N/A 8.8 HIGH
ZKteco ZKBioSecurity V5000 4.1.3 was discovered to contain a SQL injection vulnerability via the component /baseOpLog.do.
CVE-2022-36634 1 Zkteco 1 Zkbiosecurity V5000 2023-12-10 N/A 8.8 HIGH
An access control issue in ZKTeco ZKBioSecurity V5000 3.0.5_r allows attackers to arbitrarily create admin users via a crafted HTTP request.