
Zero-day Vulnerability in ZKTEco biometric fingerprint reader.
The devices could be potentially vulnerable to Remote Code Execution as well through the use of the administrative API. The exploit mentioned in credits section could be a good place to find a test for it.