ZeroHour

CVE-2022-3485

CVSS 3.1
9.8 critical
EPSS
<1%p58
Published
()
Modified
Description

In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.

Vendors
ifm
Products
moneo qha210 firmware, moneo qha200 firmware
Weakness
CWE-640
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.