Skip to content

Known CVE

Agentejo Cockpit <0.12.0 - NoSQL Injection

Agentejo Cockpit prior to 0.12.0 is vulnerable to NoSQL Injection via the newpassword method of the Auth controller, which is responsible for displaying the user password reset form.

CVE-2020-35848

Critical2020CVSS 9.8CWE-89

cve2020 · nosqli · sqli · cockpit · injection · agentejo · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website