CyberSec.Space Logo
返回 CVE 浏览器

CVE-2024-13966

MEDIUM
6.9
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2025-05-27
Last Modified2026-06-17
Data SourcesNVD

Vulnerability Description

ZKTeco BioTime allows unauthenticated attackers to enumerate usernames and log in as any user with a password unchanged from the default value '123456'. Users should change their passwords (located under the Attendance Settings tab as "Self-Password").

Affected Platforms (CPE)

📦
Zkteco

Biotime

< 9.0.4

References & Advisories

相关漏洞威胁