<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 21:46:34 +0000</lastBuildDate>
    <item>
      <title>CVE-2016-20025 — ZKTeco ZKAccess Professional 3.5.3 Privilege Escalation via Insecure Permissions</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2016-20025</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; ZKTeco Inc. ZKTeco ZKAccess Professional&lt;/p&gt;
&lt;p&gt;ZKTeco ZKAccess Professional 3.5.3 contains an insecure file permissions vulnerability that allows authenticated users to escalate privileges by modifying executable files. Attackers can leverage the Modify permission granted to the Authenticated Users group to replace executable binaries with malicious code for privilege escalation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; ZKTeco Inc. ZKTeco ZKAccess Professional&lt;/p&gt;
&lt;p&gt;ZKTeco ZKAccess Professional 3.5.3 contains an insecure file permissions vulnerability that allows authenticated users to escalate privileges by modifying executable files. Attackers can leverage the Modify permission granted to the Authenticated Users group to replace executable binaries with malicious code for privilege escalation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2016-20025</guid>
    </item>
  </channel>
</rss>
