ZKTeco ZKBio CVSecurity v6.1.1 was discovered to contain a hardcoded cryptographic key.
The product contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.
Link | Tags |
---|---|
https://zkteco.eu/downloads/zkbio-cvsecurity-installation-files | product |
https://github.com/mrojz/ZKT-Bio-CVSecurity/blob/main/CVE-2024-36526.md | broken link exploit |