Security Advisory
CVE-2008-2140
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Cross-site request forgery (CSRF) vulnerability in the rootpw plugin in rPath Appliance Platform Agent 2 and 3 allows remote attackers to reset the root password as the administrator via a crafted URL.