In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://cert.vde.com/en/advisories/VDE-2022-050/ |
History
No history.
MITRE
Status: PUBLISHED
Assigner: CERTVDE
Published: 2022-12-12T11:39:32.224Z
Updated: 2024-08-03T01:14:01.533Z
Reserved: 2022-10-13T09:30:09.401Z
Link: CVE-2022-3485
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-12-12T12:15:10.697
Modified: 2024-11-21T07:19:37.930
Link: CVE-2022-3485
Redhat
No data.