A vulnerability, which was classified as problematic, was found in ZKTeco ZKBio CVSecurity V5000 4.1.0. This affects an unknown part of the component Push Configuration Section. The manipulation of the argument Configuration Name leads to cross site scripting. It is possible to initiate the attack remotely. The identifier VDB-269733 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2024-06-26T10:31:03.685Z
Updated: 2024-08-01T21:33:05.448Z
Reserved: 2024-06-26T05:45:15.738Z
Link: CVE-2024-6344
Vulnrichment
Updated: 2024-08-01T21:33:05.448Z
NVD
Status : Awaiting Analysis
Published: 2024-06-26T11:15:52.073
Modified: 2024-06-27T00:15:13.360
Link: CVE-2024-6344
Redhat
No data.