Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xjvv-99gp-jgrm

Опубликовано: 12 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number.

In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number.

EPSS

Процентиль: 74%
0.00799
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-640

Связанные уязвимости

CVSS3: 9.8
nvd
около 3 лет назад

In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.

EPSS

Процентиль: 74%
0.00799
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-640