Security Advisory
CVE-2018-15539
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Agentejo Cockpit lacks an anti-CSRF protection mechanism. Thus, an attacker is able to change API tokens, passwords, etc.