Vulnerability Details CVE-2022-30515
ZKTeco BioTime 8.5.4 is missing authentication on folders containing employee photos, allowing an attacker to view them through filename enumeration.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 42.2%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2022-30515
-
cpe:2.3:a:zkteco:biotime:8.5.4
-
cpe:2.3:a:zkteco:biotime:8.5.5