8
CVSSv3

CVE-2022-40472

Published: 29/09/2022 Updated: 03/10/2022
CVSS v3 Base Score: 8 | Impact Score: 5.9 | Exploitability Score: 2.1
VMScore: 0

Vulnerability Summary

ZKTeco Xiamen Information Technology ZKBio Time 8.0.7 Build: 20220721.14829 exists to contain a CSV injection vulnerability. This vulnerability allows malicious users to execute arbitrary code via a crafted payload injected into the Content text field of the Add New Message module.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zktec zkbio time 8.0.7