Skip to content

Known CVE

ZKTeco BioTime <= 9.0.1 - Privilege Escalation

BioTime default employee credentials (password 123456) allow login. Sessions are not role-validated, enabling privilege escalation to perform admin actions and enumerate backup files.

CVE-2023-38952

High2023CVSS 7.3CWE-552

cve2023 · biotime · zkteco · auth-bypass · priv-esc · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website