A path traversal vulnerability in the iclock API of...
High severity
Unreviewed
Published
Aug 4, 2023
to the GitHub Advisory Database
•
Updated Oct 22, 2025
Description
Published by the National Vulnerability Database
Aug 3, 2023
Published to the GitHub Advisory Database
Aug 4, 2023
Last updated
Oct 22, 2025
A path traversal vulnerability in the iclock API of ZKTeco BioTime v8.5.5 allows unauthenticated attackers to read arbitrary files via supplying a crafted payload.
References