Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2020-17473
Lack of mutual authentication in ZKTeco FaceDepot 7B 1.0.213 and ZKBiosecurity Server 1.0.0_20190723 allows an attacker to obtain a long-lasting token by impersonating the server.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.002
EPSS Ranking
40.8%
CVSS Severity
CVSS v3 Score
5.9
CVSS v2 Score
4.3
References
https://www.trendmicro.com/vinfo/us/threat-encyclopedia/vulnerability/8131/zkteco-facedepot-7b-10213-and-zkbiosecurity-server-10020190723-long-lasting-token-vulnerability
https://www.trendmicro.com/vinfo/us/threat-encyclopedia/vulnerability/8131/zkteco-facedepot-7b-10213-and-zkbiosecurity-server-10020190723-long-lasting-token-vulnerability
Products affected by CVE-2020-17473
Zkteco
»
Zkbiosecurity Server
»
Version:
1.0.0_20190723
cpe:2.3:a:zkteco:zkbiosecurity_server:1.0.0_20190723
Zkteco
»
Facedepot 7b
»
Version:
N/A
cpe:2.3:h:zkteco:facedepot_7b:-
Zkteco
»
Facedepot 7b Firmware
»
Version:
1.0.213
cpe:2.3:o:zkteco:facedepot_7b_firmware:1.0.213
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved