CVE-2023-38955: ZKTeco Bioaccess Ivs

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to obtain sensitive information about all managed devices, including their IP addresses and device names.

Affected products

  • ZKTeco Bioaccess Ivs: version 3.3.1 only

Published 2023-08-03. Last modified 2026-07-09.