Filtered by vendor Zkteco Subscriptions
Filtered by product Bioaccess Ivs Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-38958 1 Zkteco 1 Bioaccess Ivs 2024-11-21 5.3 Medium
An access control issue in ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to arbitrarily close and open the doors managed by the platform remotely via sending a crafted web request.
CVE-2023-38956 1 Zkteco 1 Bioaccess Ivs 2024-11-21 7.5 High
A path traversal vulnerability in ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to read arbitrary files via supplying a crafted payload.
CVE-2023-38955 1 Zkteco 1 Bioaccess Ivs 2024-11-21 7.5 High
ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to obtain sensitive information about all managed devices, including their IP addresses and device names.
CVE-2023-38954 1 Zkteco 1 Bioaccess Ivs 2024-11-21 9.8 Critical
ZKTeco BioAccess IVS v3.3.1 was discovered to contain a SQL injection vulnerability.