Home

Description

ZKTeco ZKBio CVSecurity 6.1.1 is vulnerable to Directory Traversal via BaseMediaFile. An authenticated user can delete local files from the server which can lead to DoS.

PUBLISHED Reserved 2024-05-17 | Published 2024-05-30 | Updated 2025-03-13 | Assigner mitre

References

github.com/...ZKT-Bio-CVSecurity/blob/main/CVE-2024-35428.md

github.com/...ZKT-Bio-CVSecurity/blob/main/CVE-2024-35428.md

cve.org (CVE-2024-35428)

nvd.nist.gov (CVE-2024-35428)

Download JSON