Security Advisory
CVE-2023-38028
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Saho’s attendance devices ADM100 and ADM-100FP have insufficient authentication. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication to read system information and operate user's data, but can’t control system or disrupt service.