Vulnerabilities > IFM

DATE CVE VULNERABILITY TITLE RISK
2022-12-12 CVE-2022-3485 Weak Password Recovery Mechanism for Forgotten Password vulnerability in IFM Moneo Qha200 Firmware and Moneo Qha210 Firmware
In IFM Moneo Appliance with version up to 1.9.3 an unauthenticated remote attacker can reset the administrator password by only supplying the serial number and thus gain full control of the device.
network
low complexity
ifm CWE-640
critical
9.8