Vulnerability Details CVE-2022-3485
In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 66.4%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-3485
-
cpe:2.3:h:ifm:moneo_qha200:-
-
cpe:2.3:h:ifm:moneo_qha210:-
-
cpe:2.3:o:ifm:moneo_qha200_firmware:*
-
cpe:2.3:o:ifm:moneo_qha210_firmware:*