Keekoon KK002 devices 1.8.12 HD have a Cross Site Request Forgery Vulnerability affecting goform/formChnUserPwd and goform/formUserMng (and the entire set of other pages).
https://hsw69.wordpress.com/2015/10/22/keekoon-kk002-ip-camera-csrf-exploitation/