In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.
References
Link | Resource |
---|---|
https://cert.vde.com/en/advisories/VDE-2022-050/ | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: CERTVDE
Published: 2022-12-12T11:39:32.224Z
Updated: 2023-01-12T09:44:18.480Z
Reserved: 2022-10-13T09:30:09.401Z
Link: CVE-2022-3485
JSON object: View
NVD Information
Status : Modified
Published: 2022-12-12T12:15:10.697
Modified: 2023-11-07T03:51:18.740
Link: CVE-2022-3485
JSON object: View
Redhat Information
No data.
CWE