In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published: 2022-12-12T11:39:32.224Z

Updated: 2024-08-03T01:14:01.533Z

Reserved: 2022-10-13T09:30:09.401Z

Link: CVE-2022-3485

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-12-12T12:15:10.697

Modified: 2024-11-21T07:19:37.930

Link: CVE-2022-3485

cve-icon Redhat

No data.