Search/CVE-2008-2140
CVE

CVE-2008-2140

Cross-site request forgery (CSRF) vulnerability in the rootpw plugin in rPath Appliance Platform Agent 2 and 3 allows remote attackers to reset the root password as the administrator via a crafted URL.

CVSS v3.1
EPSS
0.41%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
Connections
2 relationships
Timeline
disclosure → media coverage
May 12, 2008
Disclosure — published as a CVE record. · last revised by NVD Apr 23, 2026