Vulnerabilities (CVE)

Filtered by vendor Zkteco
Filtered by product Zkbio Access Ivs
Angry Yack Logo
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-1706 1 Zkteco 1 Zkbio Access Ivs 2025-08-22 4.0 MEDIUM 3.5 LOW
A vulnerability was determined in ZKTeco ZKBio Access IVS up to 3.3.2. This impacts an unknown function of the component Department Name Search Bar. This manipulation with the input <marquee>hi causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. The vendor explains: "ZKBio Access IVS is no longer maintained and the product has been replaced by ZKBio CVAccess, it is recommended to replace it with the latest versi ...

Show More