CVE-2023-51142: Infoleak
Published Mar 21, 2024
·Updated
An issue in ZKTeco BioTime v.8.5.4 and before allows a remote attacker to obtain sensitive information.
Affected Software
2 affected components
Zkteco BioTime<8.5.4
Zkteco BioTime=8.5.4
Event History
Mar 21, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Apr 11, 2024
Data Sourced
via NVD·01:22 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-51142?
CVE-2023-51142 is classified as a moderate severity vulnerability.
2
How does CVE-2023-51142 affect ZKTeco BioTime?
CVE-2023-51142 allows remote attackers to obtain sensitive information from ZKTeco BioTime versions 8.5.4 and earlier.
3
What versions of ZKTeco BioTime are affected by CVE-2023-51142?
ZKTeco BioTime versions prior to 8.5.4 are affected by CVE-2023-51142.
4
What actions should be taken to mitigate CVE-2023-51142?
Users should upgrade ZKTeco BioTime to version 8.5.4 or later to mitigate CVE-2023-51142.
5
Is CVE-2023-51142 exploitable remotely?
Yes, CVE-2023-51142 is exploitable by remote attackers.