CVE-2024-22988

Publication date

2024-02-23 00:00:00

Family

mitre

State

PUBLISHED

Description

ZKteco ZKBio WDMS before 9.0.2 Build 20250526 allows an attacker to download a database backup via the /files/backup/ component because the filename is based on a predictable timestamp.