CVE-2023-38950 | ZKTeco BioTime 8.5.5 iclock API path traversal (Nessus ID 241709)
A vulnerability, which was classified as critical, was found in ZKTeco BioTime 8.5.5. Affected by this vulnerability is an unknown functionality of the component iclock API. Such manipulation leads to path traversal.
This vulnerability is documented as CVE-2023-38950. The attack requires being on the local network. Additionally, an exploit exists.