Showing posts with label ZKTeco. Show all posts
Showing posts with label ZKTeco. Show all posts

Tuesday, May 19, 2026

Review – 5 Advisories and 2 Updates Published – 5-19-26

Today CISA’s NCCIC-ICS published five control system security advisories for products from  Kieback & Peter, ZKTeco, ScadaBR, Siemens, and ABB. They also published updates for products from ABB. 

Advisories  

Kieback & Peter Advisory - This advisory discusses a code injection vulnerability in the Kieback & Peter DDC Building Controllers. 

ZKTeco Advisory - This advisory describes an authentication bypass using an alternate path or channel vulnerability in the ZKTeco SSC335-GC2063-Face-0b77 CCTV cameras. 

ScadaBR Advisory - This advisory describes four vulnerabilities in ScadaBR 1.2.0. 

Siemens Advisory - This advisory discusses an out-of-bounds write vulnerability in the Siemens RUGGEDCOM APE1808 Devices.  

NOTE: I briefly discussed the Siemens advisory on Saturday. 

ABB Advisory - This advisory describes a path traversal vulnerability in the ABB CoreSense HM and CoreSense M10 products. 

NOTE: I most recently discussed the ABB advisory on October 25th, 2025. 

Updates  

ABB Update #1 - This update provides additional information for the 800xA Base advisory that was originally published on June 25th, 2025. 

NOTE: I most recently discussed the ABB advisory on January 25th, 2026. 

ABB Update #2 - This update provides additional information for the RMC-100 advisory that was originally published on July 15th, 2025. 


For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/5-advisories-and-2-updates-published-67b - subscription required. 

Monday, May 19, 2025

CISA Adds ZKTeco BioTime Vulnerability to KEV Catalog – 5-19-25

Today, CISA announced that it had added a path traversal vulnerability in the ZKTeco BioTime product to CISA’s Known Exploited Vulnerabilities (KEV) catalog. The vulnerability was originally reported by Claroty as one of four vulnerabilities reported in that product in July 2023. On April 1st, 2024, an exploit for three of the four vulnerabilities reported by Claroty were published on Sploitus.com. In November of 2024, Fortinet published an article that included a discussion (“Exploitation Attempts – BIOTIME-1” page 34) about seeing this vulnerability actively being exploited by Iranian attackers in the Middle East. On May 12th, 2025, ZKTeco published an advisory for two of the four vulnerabilities reported by Claroty, including this vulnerability. They reported that they have a new version that mitigates those two vulnerabilities.

CISA has ordered federal agencies using BioTime to apply “mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.”

Saturday, June 15, 2024

Review – Public ICS Disclosures – Week of 6-8-24 – Part 2

For Part 2 we have nine additional vendor disclosures from Schneider Electric (5), Siemens, VMware, Western Digital, and ZKTeco. We also have 28 vendor updates from HP (13), Schneider (2), and Siemens (13). In Part 3 we will look at researcher reports and exploits.

Advisories

Schneider Advisory #1 - Schneider published an advisory that describes a files or directories accessible to external parties vulnerability in their Modicon M340 and BMXNOE0100 and BMXNOE0110 products.

Schneider Advisory #2 - Schneider published an advisory that describes a use of broken or risky cryptographic algorithm vulnerability.

Schneider Advisory #3 - Schneider published an advisory that describes an exposure of resource to wrong sphere vulnerability in their EVlink Home Smart product.

Schneider Advisory #4 - Schneider published an advisory that describes a TOCTOU race condition in their SpaceLogic AS-P and AS-B products.

Schneider Advisory #5 - Schneider published an advisory that describes six vulnerabilities in their SAGE RTU products.

Siemens Advisory - Siemens published an advisory that describes an incorrect type conversion or cast vulnerability in their Tecnomatix Plant Simulation product.

VMware Advisory - VMware published an advisory that describes three vulnerabilities in their SD-WAN Edge and SD-WAN Orchestrator products.

Western Digital Advisory - Western Digital published an advisory that describes a cross-site scripting vulnerability in multiple Western Digital products.

ZKTeco Advisory - ZKTeco published an advisory that announced that they had a firmware update that “addresses minor vulnerabilities identified in certain models of our standalone terminals”.

Updates

HP Update #1 - HP published an update for their Aruba 9200 and 9000 Series Controllers advisory that was originally published on September 6th, 2023.

HP Update #2 - HP published an update for their Aruba ClearPass Policy Manager advisory that was originally published on October 24th, 2023.

HP Update #3 - HP published an update for their Aruba AirWave Management Platform advisory that was originally published on October 17th, 2023 and most recently updated on October 23rd, 2023.

HP Update #4 - HP published an update for their ArubaOS-Switch Switches advisory that was originally published on August 29th, 2023.

HP Update #5 - HP published an update for their Aruba EdgeConnect SD-WAN Orchestrator advisory that was originally published on August 22nd, 2023 and most recently updated on October 3rd, 2023.

HP Update #6 - HP published an update for their Aruba Networking Virtual Intranet Access advisory that was originally published on August 15th, 2023.

HP Update #7 - HP published an update for their Aruba CX Switches advisory that was originally published on August 1st, 2023.

HP Update #8 - HP published an update for their Aruba Access Points advisory that was originally published on July 25th, 2023.

HP Update #9 - HP published an update for their ArubaOS advisory that was originally published on July 11th, 2023.

HP Update #10 - HP published an update for their Aruba EdgeConnect Enterprise advisory that was originally published on May 24th, 2023.

HP Update #11 - HP published an update for their Aruba Access Points advisory that was originally published on May 9th, 2023.

HP Update #12 - HP published an update for their Aruba Bypassing Wi-Fi Encryption advisory that was originally published on April 4th, 2023, and most recently updated on April 6th, 2023.

HP Update #13 - HP published an update for their ProLiant DL/DX/ML/SY/RL/XL/Edgeline Servers advisory that was originally published on April 2nd, 2024 and most recently updated on June 3rd, 2024.

Schneider Update #1 - Schneider published an update for their CODESYS Runtime advisory that was originally published on July 11th, 2023, and most recently updated on April 9th, 2024.

Schneider Update #2 - Schneider published an update for their Easy UPS advisory that was originally published on April 11th, 2023, and most recently updated on June 13th, 2023.

Siemens Update #1 - Siemens published an update for their SICAM Products advisory that was originally published on May 14th, 2024.

Siemens Update #2 - Siemens published an update for their RUGGEDCOM APE1808 advisory that was originally published on March 12th, 2024, and most recently updated on May 14th, 2024.

Siemens Update #3 - Siemens published an update for their SIMATIC WinCC advisory that was originally published on February 13th, 2024, and most recently updated on April 9th, 2024.

Siemens Update #4 - Siemens published an update for their OPC UA Implementations advisory that was originally published on September 12th, 2023, and most recently updated on May 14th, 2024.

Siemens Update #5 - Siemens published an update for their Profinet Devices advisory that was originally published on July 13th, 2021, and most recently updated on April 12th, 2024.

Siemens Update #6 - Siemens published an update for their Webserver of Industrial Products advisory that was originally published on April 11th, 2023, and most recently updated on May 9th, 2023.

Siemens Update #7 - Siemens published an update for their n S7-1500 CPU Devices advisory that was originally published on January 10th, 2023, and most recently updated on December 12th, 2023.

Siemens Update #8 - Siemens published an update for their PROFINET Stack advisory that was originally published on April 12th, 2022, and most recently updated on May 14th, 2024.

Siemens Update #9 - Siemens published an update for their Parasolid and Teamcenter Visualization advisory that was originally published on August 8th, 2023, and most recently updated on November 14th, 2023.

Siemens Advisory # 10 - Siemens published an update for their GNU/Linux Subsystem advisory that was originally published on December 12th, 2023, and most recently updated on May 14th, 2024.

Siemens Advisory #11 - Siemens published an update for their SCALANCE XB-200 advisory that was originally published on March 12th, 2024.

Siemens Advisory #12 - Siemens published an update for their SIMATIC RTLS advisory that was originally published on May 14th, 2024.

Siemens Advisory #13 - Siemens published an update for their SICAM PAS/PQS advisory that was originally published on October 10th, 2023.

 

For more information on these disclosures, including links to 3rd party advisories and brief summaries of changes made in updates, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-6-f31 - subscription required.

Sunday, August 6, 2023

Review – Public ICS Disclosures – Week of 7-29-23 – Part 2

For Part 2 we have eight vendor updates for products from Broadcom (2), Fujitsu, Mitsubishi (2), Moxa (2), and Omron. Finally, we have 24 researcher reports for vulnerabilities in products from Inductive Automation (4), Triangle MicroWorks (12), and ZKTeco (8).

Updates

Broadcom Update #1 - Broadcom published an update for their Apache httpd advisory that was originally published on September 13th, 2022.

Broadcom Update #2 - Broadcom published an update for their follow-redirects advisory that was originally published on September 13th, 2023.

Fujitsu Update - JP-CERT published an update for their Si-R series advisory that was originally published on July 26th, 2023.

Mitsubishi Update #1 - Mitsubishi published an update for their Genisis64 advisory that was originally published on July 19th, 2023 and most recently updated on February 9th, 2023.

Mitsubishi Update #2 - Mitsubishi published an update for their Genisis64 advisory that was originally published on December 13th, 2022 and most recently updated on February 9th, 2023.

Moxa Update #1 - Moxa published an update for their NPort 5110 Series advisory that was originally published on June 10th, 2022 and most recently updated on July 28th, 2023.

Moxa Update #2 - Moxa published an update for their multiple switch series advisory that was originally published on June 14th, 2023 and most recently updated on July 7th, 2023.

Omron Update - Omron published an update for their CX-Drive advisory that was originally published on April 24th, 2023.

Researcher Reports

Inductive Automaton Reports - The Zero Day Initiative published four reports of individual vulnerabilities in the Inductive Automation Ignition product.

Triangle MicroWorks Reports - The Zero Day Initiative published 12 reports of individual vulnerabilities in the Triangle MicroWorks SCADA Gateway product.

ZKTeco Reports #1-4 - Claroty published four reports for individual vulnerabilities in the ZKTeco BioAccess product.

ZKTeco Reports #5-8 - Claroty published four reports for individual vulnerabilities in the ZKTeco BioTime product.

 

For more details about these disclosures, including summary of changes in advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-7-bf5 - subscription required.

 
/* Use this with templates/template-twocol.html */