CVE-2023-38954 | ZKTeco BioAccess IVS 3.3.1 sql injection (EUVD-2023-42714)
A vulnerability has been found in ZKTeco BioAccess IVS 3.3.1 and classified as critical. The impacted element is an unknown function. Performing a manipulation results in sql injection.
This vulnerability is identified as CVE-2023-38954. The attack can only be performed from the local network. There is not any exploit available.