CVE-2017-17992: Iwcnetwork Biometric Shift Employee Management System

Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.

Biometric Shift Employee Management System allows Arbitrary File Download via directory traversal sequences in the index.php form_file_name parameter in a download_form action.

Affected products

  • Iwcnetwork Biometric Shift Employee Management System: version 4.0 only

Published 2017-12-30. Last modified 2026-06-17.