Vulnerability index

Browse CVEs

7,378 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Web Threat Detection MEDIUM 6.8
CVE-2015-0541

Cross-site request forgery (CSRF) vulnerability in EMC RSA Web Threat Detection before 5.1 allows remote attackers to hijack the authentication of ar…

Fix: after 5.0
Fix from $1,600 2015-06-05
Headend Digital Broadband Delivery System MEDIUM 6.8
CVE-2015-0759

Cross-site request forgery (CSRF) vulnerability in Cisco Headend Digital Broadband Delivery System allows remote attackers to hijack the authenticati…

Mitigation only
Fix from $1,600 2015-06-02
Moodle MEDIUM 6.8
CVE-2015-0218

Cross-site request forgery (CSRF) vulnerability in auth/shibboleth/logout.php in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before 2.7.4, and 2.…

Fix: after 2.5.9
Fix from $1,600 2015-06-01
Moodle MEDIUM 6.8
CVE-2015-0213

Multiple cross-site request forgery (CSRF) vulnerabilities in (1) editcategories.html and (2) editcategories.php in the Glossary module in Moodle thr…

Fix: after 2.5.9
Fix from $1,600 2015-06-01
phpMyAdmin MEDIUM 6.8
CVE-2015-3902

Multiple cross-site request forgery (CSRF) vulnerabilities in the setup process in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x before 4.2.13.3, 4.3.x be…

Patch available
Fix from $1,600 2015-05-26
Endpoint Manager Family MEDIUM 6.8
CVE-2014-4774

Cross-site request forgery (CSRF) vulnerability in the login page in IBM License Metric Tool 9 before 9.1.0.2 and Endpoint Manager for Software Use A…

Mitigation only
Fix from $1,600 2015-05-25
Optim Workload Replay MEDIUM 6.8
CVE-2015-1894

Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Optim Workload Replay 2.x before 2.1.0.3 allows remote attackers to hijack the auth…

Patch available
Fix from $1,600 2015-05-25
Simple Php Agenda MEDIUM 6.8
CVE-2012-1978

Multiple cross-site request forgery (CSRF) vulnerabilities in Simple PHP Agenda 2.2.8 and earlier allow remote attackers to hijack the authentication…

Fix: after 2.2.8
Fix from $1,600 2015-05-21
Hosted Collaboration Solution MEDIUM 6.8
CVE-2015-0741

Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco Prime Central for Hosted Collaboration Solution (PC4HCS) 10.6(1) and earlier allo…

Fix: after 10.6
Fix from $1,600 2015-05-21
Xeams MEDIUM 6.8
CVE-2015-3141

Multiple cross-site request forgery (CSRF) vulnerabilities in Synametrics Technologies Xeams 4.5 Build 5755 and earlier allow remote attackers to hij…

Fix: after 4.5
Fix from $1,600 2015-05-20
Template Cms MEDIUM 6.8
CVE-2012-4902

Multiple cross-site request forgery (CSRF) vulnerabilities in Template CMS 2.1.1 and earlier allow remote attackers to hijack the authentication of a…

Fix: after 2.1.1
Fix from $1,600 2015-05-20
Oscmax MEDIUM 6.8
CVE-2012-6691

Multiple cross-site request forgery (CSRF) vulnerabilities in the admin panel in osCMax before 2.5.1 allow remote attackers to hijack the authenticat…

Fix: after 2.5.0
Fix from $1,600 2015-05-20
Unified Intelligence Center MEDIUM 6.8
CVE-2015-0740

Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center 10.6(1) allows remote attackers to hijack the authentication of …

Mitigation only
Fix from $1,600 2015-05-20
Unified Customer Voice Portal MEDIUM 6.8
CVE-2015-0735

Cross-site request forgery (CSRF) vulnerability in Cisco Unified Customer Voice Portal (CVP) 10.5(1) allows remote attackers to hijack the authentica…

Mitigation only
Fix from $1,600 2015-05-17
Mediasense MEDIUM 6.8
CVE-2015-0736

Cross-site request forgery (CSRF) vulnerability in Cisco MediaSense 10.5(1) and earlier allows remote attackers to hijack the authentication of arbit…

Mitigation only
Fix from $1,600 2015-05-16
Unity Connection MEDIUM 6.8
CVE-2015-0716

Cross-site request forgery (CSRF) vulnerability in the CUCReports page in Cisco Unity Connection 11.0(0.98000.225) and 11.0(0.98000.332) allows remot…

Mitigation only
Fix from $1,600 2015-05-07
Remote Access Firmware MEDIUM 6.8
CVE-2015-2248

Cross-site request forgery (CSRF) vulnerability in the user portal in Dell SonicWALL Secure Remote Access (SRA) products with firmware before 7.5.1.0…

Fix: 7.5.1.0-38sv / 8.0.0.1-16sv+
Fix from $1,600 2015-05-01
Curam Social Program Management MEDIUM 6.8
CVE-2014-6090

Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) DataMappingEditorCommands, (2) DatastoreEditorCommands, and (3) IEGEditorComman…

Patch available
Fix from $1,600 2015-04-27
Tinywebgallery MEDIUM 6.8
CVE-2012-2930

Multiple cross-site request forgery (CSRF) vulnerabilities in TinyWebGallery (TWG) before 1.8.8 allow remote attackers to hijack the authentication o…

Fix: after 1.8.6
Fix from $1,600 2015-04-24
Zen Cart MEDIUM 5.8
CVE-2011-4403

Multiple cross-site request forgery (CSRF) vulnerabilities in Zen Cart 1.3.9h allow remote attackers to hijack the authentication of administrators f…

No fix yet
Fix from $1,600 2015-04-24
Unified Meetingplace MEDIUM 6.8
CVE-2015-0705

Cross-site request forgery (CSRF) vulnerability in the SOAP API endpoints of the web-services directory in Cisco Unified MeetingPlace 8.6(1.9) allows…

Mitigation only
Fix from $1,600 2015-04-22
Unified Meetingplace MEDIUM 6.8
CVE-2015-0704

Multiple cross-site request forgery (CSRF) vulnerabilities in API features in Cisco Unified MeetingPlace 8.6(1.9) allow remote attackers to hijack th…

Mitigation only
Fix from $1,600 2015-04-22
Commerce Balanced Payments MEDIUM 5.8
CVE-2015-3388

Cross-site request forgery (CSRF) vulnerability in the Commerce Balanced Payments module for Drupal allows remote attackers to hijack the authenticat…

Fix: after 7.x-1.2
Fix from $1,600 2015-04-21
Node Basket MEDIUM 5.8
CVE-2015-3382

Multiple cross-site request forgery (CSRF) vulnerabilities in the Node basket module for Drupal allow remote attackers to hijack the authentication o…

Fix: after 7.x-1.0-rc2
Fix from $1,600 2015-04-21
Feature Set MEDIUM 5.8
CVE-2015-3380

Multiple cross-site request forgery (CSRF) vulnerabilities in the Feature Set module for Drupal allow remote attackers to hijack the authentication o…

Fix: after 7.x-1.0-beta1
Fix from $1,600 2015-04-21
Shibboleth Authentication MEDIUM 5.8
CVE-2015-3375

Cross-site request forgery (CSRF) vulnerability in the Shibboleth Authentication module before 6.x-4.1 and 7.x-4.x before 7.x-4.1 for Drupal allows r…

Fix: after 6.x-4.0
Fix from $1,600 2015-04-21
Corner MEDIUM 5.8
CVE-2015-3374

Multiple cross-site request forgery (CSRF) vulnerabilities in the Corner module for Drupal allow remote attackers to hijack the authentication of adm…

Patch available
Fix from $1,600 2015-04-21
Node Invite MEDIUM 6.8
CVE-2015-3370

Cross-site request forgery (CSRF) vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote attackers to hijack the authenticat…

Fix: after 6.x-2.3
Fix from $1,600 2015-04-21
Patterns MEDIUM 6.8
CVE-2015-3367

Multiple cross-site request forgery (CSRF) vulnerabilities in the Patterns module before 7.x-2.2 for Drupal allow remote attackers to hijack the auth…

Fix: after 7.x-2.1
Fix from $1,600 2015-04-21
Alfresco MEDIUM 5.8
CVE-2015-3366

Cross-site request forgery (CSRF) vulnerability in the Alfresco module before 6.x-1.3 for Drupal allows remote attackers to hijack the authentication…

Fix: after 6.x-1.2
Fix from $1,600 2015-04-21