Description
Certain ZKTeco products (ZEM500-510-560-760, ZEM600-800, ZEM720, ZMM) allow access to sensitive information via direct requests for the form/DataApp?style=1 and form/DataApp?style=0 URLs. The affected versions may be before 8.88 (ZEM500-510-560-760, ZEM600-800, ZEM720) and 15.00 (ZMM200-220-210). The fixed versions are firmware version 8.88 (ZEM500-510-560-760, ZEM600-800, ZEM720) and firmware version 15.00 (ZMM200-220-210).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-46008 | Certain ZKTeco products (ZEM500-510-560-760, ZEM600-800, ZEM720, ZMM) allow access to sensitive information via direct requests for the form/DataApp?style=1 and form/DataApp?style=0 URLs. The affected versions may be before 8.88 (ZEM500-510-560-760, ZEM600-800, ZEM720) and 15.00 (ZMM200-220-210). The fixed versions are firmware version 8.88 (ZEM500-510-560-760, ZEM600-800, ZEM720) and firmware version 15.00 (ZMM200-220-210). |
References
History
Tue, 15 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Zkteco
Subscribe
Zem500
Subscribe
Zem500 Firmware
Subscribe
Zem510
Subscribe
Zem510 Firmware
Subscribe
Zem560
Subscribe
Zem560 Firmware
Subscribe
Zem600
Subscribe
Zem600 Firmware
Subscribe
Zem720
Subscribe
Zem720 Firmware
Subscribe
Zem760
Subscribe
Zem760 Firmware
Subscribe
Zem800
Subscribe
Zem800 Firmware
Subscribe
Zmm200
Subscribe
Zmm200 Firmware
Subscribe
Zmm210
Subscribe
Zmm210 Firmware
Subscribe
Zmm220
Subscribe
Zmm220 Firmware
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-15T13:33:43.485Z
Reserved: 2022-10-15T00:00:00.000Z
Link: CVE-2022-42953
Updated: 2024-08-03T13:19:05.508Z
Status : Modified
Published: 2022-12-25T05:15:10.433
Modified: 2025-04-15T14:15:33.560
Link: CVE-2022-42953
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD