CVE-2016-20028 | ZKTeco ZKBioSecurity 3.0.1.0_R_230 HTTP Request cross-site request forgery (ZSL-2016-5364 / EUVD-2016-10811)
A vulnerability marked as problematic has been reported in ZKTeco ZKBioSecurity 3.0.1.0_R_230. Affected by this vulnerability is an unknown functionality of the component HTTP Request Handler. The manipulation leads to cross-site request forgery.
This vulnerability is documented as CVE-2016-20028. The attack can be initiated remotely. There is not any exploit available.