Vulnerability Details CVE-2022-3485
In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.5%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-3485
-
cpe:2.3:h:ifm:moneo_qha200:-
-
cpe:2.3:h:ifm:moneo_qha210:-
-
cpe:2.3:o:ifm:moneo_qha200_firmware:*
-
cpe:2.3:o:ifm:moneo_qha210_firmware:*