Vulnerability index

Browse CVEs

7,378 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Unified Computing System MEDIUM 6.8
CVE-2014-7996

Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Integrated Management Controller in Cisco Unified Computing System allo…

Mitigation only
Fix from $1,600 2014-11-18
Php Scriptlerim Who\'s Who MEDIUM 6.8
CVE-2014-8953

Multiple cross-site request forgery (CSRF) vulnerabilities in Php Scriptlerim Who's Who script allow remote attackers to hijack the authentication of…

No fix yet
Fix from $1,600 2014-11-17
Imember360 MEDIUM 6.8
CVE-2014-8948

Cross-site request forgery (CSRF) vulnerability in the iMember360 plugin 3.8.012 through 3.9.001 for WordPress allows remote attackers to hijack the …

No fix yet
Fix from $1,600 2014-11-16
Rv180 Firmware MEDIUM 6.8
CVE-2014-2178

Cross-site request forgery (CSRF) vulnerability in the administrative web interface in the Cisco RV router firmware on RV220W devices, before 1.0.5.9…

Fix: after 1.0.5.8
Fix from $1,600 2014-11-07
Firmware MEDIUM 6.8
CVE-2014-8654

Multiple cross-site request forgery (CSRF) vulnerabilities in Compal Broadband Networks (CBN) CH6640E and CG6640E Wireless Gateway hardware 1.0 with …

No fix yet
Fix from $1,600 2014-11-06
Cloud Service Management MEDIUM 6.8
CVE-2014-8473

Cross-site request forgery (CSRF) vulnerability in CA Cloud Service Management (CSM) before Summer 2014 allows remote attackers to hijack the authent…

Fix: after 2014
Fix from $1,600 2014-11-04
Securetransport MEDIUM 6.8
CVE-2013-7057

Cross-site request forgery (CSRF) vulnerability in Axway SecureTransport 5.1 SP2 and earlier allows remote attackers to hijack the authentication of …

Fix: after 5.1
Fix from $1,600 2014-11-04
Network Data Loss Prevention MEDIUM 6.8
CVE-2014-8523

Cross-site request forgery (CSRF) vulnerability in McAfee Network Data Loss Prevention (NDLP) before 9.3 allows remote attackers to hijack the authen…

Fix: after 9.2.2
Fix from $1,600 2014-10-29
Tririga Application Platform MEDIUM 6.0
CVE-2014-4839

Cross-site request forgery (CSRF) vulnerability in birtviewer.query in IBM TRIRIGA Application Platform 3.2 and 3.3 before 3.3.0.2, 3.3.1 before 3.3.…

Mitigation only
Fix from $1,600 2014-10-29
Websphere Portal MEDIUM 6.8
CVE-2014-6125

Cross-site request forgery (CSRF) vulnerability in IBM WebSphere Portal 8.5.0 before CF03 allows remote attackers to hijack the authentication of arb…

Patch available
Fix from $1,600 2014-10-28
Egroupware MEDIUM 6.8
CVE-2014-2987

Multiple cross-site request forgery (CSRF) vulnerabilities in EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edition befo…

Fix: after 1.8006
Fix from $1,600 2014-10-26
A32 Firmware MEDIUM 6.8
CVE-2014-7281

Cross-site request forgery (CSRF) vulnerability in Shenzhen Tenda Technology Tenda A32 Router with firmware 5.07.53_CN allows remote attackers to hij…

No fix yet
Fix from $1,600 2014-10-23
Openmrs MEDIUM 6.8
CVE-2014-8073

Cross-site request forgery (CSRF) vulnerability in OpenMRS 2.1 Standalone Edition allows remote attackers to hijack the authentication of administrat…

No fix yet
Fix from $1,600 2014-10-23
Mrbs Module MEDIUM 6.8
CVE-2013-7407

Cross-site request forgery (CSRF) vulnerability in the MRBS module for Drupal allows remote attackers to hijack the authentication of unspecified vic…

Mitigation only
Fix from $1,600 2014-10-22
E3236 Firmware MEDIUM 6.8
CVE-2014-8331

Multiple cross-site request forgery (CSRF) vulnerabilities in Huawei HiLink E3236 before E3276sTCPU-V200R002B470D13SP00C00 and E3276sWebUI-V100R007B1…

Mitigation only
Fix from $1,600 2014-10-20
Smartphone Pentest Framework MEDIUM 6.8
CVE-2012-5695

Multiple cross-site request forgery (CSRF) vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 through 0.1.4 allow remote attac…

No fix yet
Fix from $1,600 2014-10-20
Dotproject MEDIUM 6.8
CVE-2012-5701

Multiple SQL injection vulnerabilities in dotProject before 2.1.7 allow remote authenticated administrators to execute arbitrary SQL commands via the…

Fix: after 2.1.6
Fix from $1,600 2014-10-20
System Management Homepage MEDIUM 6.8
CVE-2014-7874

Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 3.2.3 on HP-UX B.11.23, and before 3.2.8 on HP-UX B.11.…

Fix: after 3.2.7
Fix from $1,600 2014-10-19
Fox Datadiode MEDIUM 6.8
CVE-2014-2358

Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative web interface in the proxy server on Fox-IT Fox DataDiode appliances…

Fix: after 1.7.1
Fix from $1,600 2014-10-19
Twitget MEDIUM 6.8
CVE-2014-2559

Multiple cross-site request forgery (CSRF) vulnerabilities in twitget.php in the Twitget plugin before 3.3.3 for WordPress allow remote attackers to …

Fix: after 3.3.1
Fix from $1,600 2014-10-17
Coldfusion MEDIUM 6.8
CVE-2014-0570

Cross-site request forgery (CSRF) vulnerability in Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Up…

Patch available
Fix from $1,600 2014-10-15
M\/monit MEDIUM 6.8
CVE-2014-6409

Cross-site request forgery (CSRF) vulnerability in M/Monit 3.3.2 and earlier allows remote attackers to hijack the authentication of administrators f…

Fix: after 3.3.2
Fix from $1,600 2014-10-06
Jolokia MEDIUM 6.8
CVE-2014-0168

Cross-site request forgery (CSRF) vulnerability in Jolokia before 1.2.1 allows remote attackers to hijack the authentication of users for requests th…

Fix: after 1.2.0
Fix from $1,600 2014-10-06
Firmware HIGH 9.3
CVE-2013-2645

Multiple cross-site request forgery (CSRF) vulnerabilities on the TP-LINK WR1043N router with firmware TL-WR1043ND_V1_120405 allow remote attackers t…

Mitigation only
Fix from $1,950 2014-10-06
Mm Forum MEDIUM 6.8
CVE-2014-6299

Cross-site request forgery (CSRF) vulnerability in the mm_forum extension before 1.9.3 for TYPO3 allows remote attackers to hijack the authentication…

Fix: after 1.9.2
Fix from $1,600 2014-10-03
Wan Optimization Suite MEDIUM 6.8
CVE-2014-7158

Cross-site request forgery (CSRF) vulnerability in Exinda WAN Optimization Suite 7.0.0 (2160) allows remote attackers to hijack the authentication of…

No fix yet
Fix from $1,600 2014-10-02
System Management Homepage MEDIUM 6.0
CVE-2014-2641

Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 7.4 allows remote authenticated users to hijack the aut…

Fix: after 7.3
Fix from $1,600 2014-10-02
Openfiler MEDIUM 6.8
CVE-2014-7190

Multiple cross-site request forgery (CSRF) vulnerabilities in Openfiler 2.99.1 allow remote attackers to hijack the authentication of administrators …

No fix yet
Fix from $1,600 2014-09-30
Linksys Wrt310n Router Firmware MEDIUM 6.8
CVE-2013-3068

Cross-site request forgery (CSRF) vulnerability in apply.cgi in Linksys WRT310Nv2 2.0.0.1 allows remote attackers to hijack the authentication of adm…

No fix yet
Fix from $1,600 2014-09-29
F5d8236 4 V2 MEDIUM 6.8
CVE-2013-3083

Cross-site request forgery (CSRF) vulnerability in cgi-bin/system_setting.exe in Belkin F5D8236-4 v2 allows remote attackers to hijack the authentica…

No fix yet
Fix from $1,600 2014-09-29