cve/2024/CVE-2024-13966.md
2025-09-29 21:09:30 +02:00

775 B

CVE-2024-13966

Description

ZKTeco BioTime allows unauthenticated attackers to enumerate usernames and log in as any user with a password unchanged from the default value '123456'. Users should change their passwords (located under the Attendance Settings tab as "Self-Password").

POC

Reference

Github

No PoCs found on GitHub currently.