After watching Chris Nickerson’s (@Indi303) talk at Derbycon titled “50 Shades of RED: Stories from the ‘Playroom’” I was curious about the door control systems he talked about. Looking around Shodan I found a saved search for a SSS Siedle Door system. Like he said about most of them having default passwords it did to. The ‘Service’ account has a default password of ‘Siedle’ which gives almost full access to the system (tested version 220.127.116.11-ZK204). On top of messing with adding, renaming, or deleting doors and users, this was the feature he talked about:
Yes!! You can force all the doors open!