Description
This vulnerability exists in ZKTeco WL20 due to storage of admin and user credentials without encryption in the device firmware. An attacker with physical access could exploit this vulnerability by extracting the firmware and reverse engineer the binary data to access the unencrypted credentials stored in the firmware of targeted device.
Problem types
CWE-312: Cleartext Storage of Sensitive Information
Product status
<=ZLM31-FXO1-3.1.8
Credits
This vulnerability is reported by Shravan Singh from Kavach IoT Security.
References
www.cert-in.org.in/...eid=PUBVLNOTES01&VLCODE=CIVN-2025-0172
www.zkteco.com/en/Security_Bulletinsibs/20