Vulnerabilities > Zkteco > Bioaccess IVS > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-08-03 CVE-2023-38958 Incorrect Authorization vulnerability in Zkteco Bioaccess IVS 3.3.1
An access control issue in ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to arbitrarily close and open the doors managed by the platform remotely via sending a crafted web request.
network
low complexity
zkteco CWE-863
5.3