Beveiligingsadvies

CVE-2022-40472

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-09-29 19:02:07
Laatst bijgewerkt 2025-05-20 20:05:27
Toegewezen door mitre
CVSS-score 8.0
Status PUBLISHED

Beschrijving

ZKTeco Xiamen Information Technology ZKBio Time 8.0.7 Build: 20220721.14829 was discovered to contain a CSV injection vulnerability. This vulnerability allows attackers to execute arbitrary code via a crafted payload injected into the Content text field of the Add New Message module.