Security Advisory
CVE-2024-22988
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
ZKteco ZKBio WDMS before 9.0.2 Build 20250526 allows an attacker to download a database backup via the /files/backup/ component because the filename is based on a predictable timestamp.