An unauthenticated remote attacker can change the admin password in a moneo appliance due to weak password recovery mechanism.
References
Link | Resource |
---|---|
https://cert.vde.com/en/advisories/VDE-2024-028 |
Configurations
No configuration.
History
No history.
Information
Published : 2024-06-03 09:15
Updated : 2024-06-03 14:46
NVD link : CVE-2024-5404
Mitre link : CVE-2024-5404
CVE.ORG link : CVE-2024-5404
JSON object : View
Products Affected
No product.
CWE
CWE-640
Weak Password Recovery Mechanism for Forgotten Password