CVE-2022-3485
—CVSS 3.1
9.8 critical
EPSS
<1%p58
Published
()
Modified
Description
In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.
- Vendors
- ifm
- Products
- moneo qha210 firmware, moneo qha200 firmware
- Weakness
- CWE-640
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.