Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Cockpit
(Agentejo)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 29 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2018-10-15 | CVE-2018-15540 | Agentejo Cockpit performs actions on files without appropriate validation and therefore allows an attacker to traverse the file system to unintended locations and/or access arbitrary files, aka /media/api Directory Traversal. | Cockpit | 9.8 | ||
2018-10-15 | CVE-2018-15539 | Agentejo Cockpit lacks an anti-CSRF protection mechanism. Thus, an attacker is able to change API tokens, passwords, etc. | Cockpit | 8.8 | ||
2018-10-15 | CVE-2018-15538 | Agentejo Cockpit has multiple Cross-Site Scripting vulnerabilities. | Cockpit | 6.1 |