Junglewise Threat Intelligence

CVE-2018-1000082: PYSEC-2018-111 - Ajenti version version 2 contains a Cross ite Request Forgery (CSRF) vulnerability in the command execution panel of the tool used to manage

CVE-2018-1000082 · Severity: info · Published 2018-03-13

Technologies: ajenti-panel (PyPI). Vendors: PyPI.

Executive brief

Ajenti version version 2 contains a Cross ite Request Forgery (CSRF) vulnerability in the command execution panel of the tool used to manage the server. that can result in Code execution on the server . This attack appear to be exploitable via Being a CSRF, victim interaction is needed, when the victim access the infected trigger of the CSRF any code that match the victim privledges on the server can be executed..

Affected products

  • PyPI ajenti-panel

Related threats