Vulnerability index

Browse CVEs

7,378 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Bigtree Cms MEDIUM 6.8
CVE-2013-5313

Cross-site request forgery (CSRF) vulnerability in core/admin/modules/users/update.php in BigTree CMS 4.0 RC2 and earlier allows remote attackers to …

Fix: after 4.0
Fix from $1,600 2013-08-19
Bigtree Cms MEDIUM 6.8
CVE-2013-4881

Cross-site request forgery (CSRF) vulnerability in core/admin/modules/users/create.php in BigTree CMS 4.0 RC2 and earlier allows remote attackers to …

Fix: after 4.0
Fix from $1,600 2013-08-19
My Twitter MEDIUM 6.8
CVE-2013-3253

Cross-site request forgery (CSRF) vulnerability in admin/setting.php in the Xhanch - My Twitter plugin before 2.7.7 for WordPress allows remote attac…

Fix: after 2.7.6
Fix from $1,600 2013-08-09
Sexybookmarks MEDIUM 6.8
CVE-2013-3256

Cross-site request forgery (CSRF) vulnerability in the Shareaholic SexyBookmarks plugin 6.1.4.0 for WordPress allows remote attackers to hijack the a…

Mitigation only
Fix from $1,600 2013-08-08
Infosphere Biginsights MEDIUM 6.0
CVE-2013-3992

Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere BigInsights 2.0 through 2.1 allows remote authenticated users to hijack the authent…

Mitigation only
Fix from $1,600 2013-08-06
Unified Communications Manager MEDIUM 6.8
CVE-2013-3450

Cross-site request forgery (CSRF) vulnerability in the User WebDialer page in Cisco Unified Communications Manager (Unified CM) allows remote attacke…

Mitigation only
Fix from $1,600 2013-08-05
Unified Communications Manager MEDIUM 6.8
CVE-2013-3451

Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco Unified Communications Manager (Unified CM) allow remote attackers to hijack the …

Mitigation only
Fix from $1,600 2013-08-05
Wincc MEDIUM 6.8
CVE-2013-4911

Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to hijack the authentic…

Mitigation only
Fix from $1,600 2013-08-01
Web Gateway MEDIUM 6.0
CVE-2013-4671

Cross-site request forgery (CSRF) vulnerability in the management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allows remote auth…

Fix: after 5.1
Fix from $1,600 2013-08-01
Tq Seo MEDIUM 6.8
CVE-2013-4871

Cross-site request forgery (CSRF) vulnerability in the TEQneers SEO Enhancements (tq_seo) extension before 5.0.1 for TYPO3 allows remote attackers to…

Fix: after 5.0.0
Fix from $1,600 2013-07-20
Identity Services Engine Software MEDIUM 6.8
CVE-2013-3420

Cross-site request forgery (CSRF) vulnerability in the web framework on the Cisco Identity Services Engine (ISE) allows remote attackers to hijack th…

Mitigation only
Fix from $1,600 2013-07-18
Sharebar MEDIUM 6.8
CVE-2013-3491

Multiple cross-site request forgery (CSRF) vulnerabilities in the Sharebar plugin 1.2.5 for WordPress allow remote attackers to hijack the authentica…

Mitigation only
Fix from $1,600 2013-07-16
Secure Access Control System MEDIUM 6.8
CVE-2013-3424

Cross-site request forgery (CSRF) vulnerability in Administration and View pages in Cisco Secure Access Control System (ACS) allows remote attackers …

Mitigation only
Fix from $1,600 2013-07-12
Dropdown Menu Widget MEDIUM 6.8
CVE-2013-2704

Cross-site request forgery (CSRF) vulnerability in the Dropdown Menu Widget plugin 1.9.1 for WordPress allows remote attackers to hijack the authenti…

Mitigation only
Fix from $1,600 2013-07-12
Fortios MEDIUM 5.1
CVE-2013-1414

Multiple cross-site request forgery (CSRF) vulnerabilities in Fortinet FortiOS on FortiGate firewall devices before 4.3.13 and 5.x before 5.0.2 allow…

Fix: after 4.3.12
Fix from $1,600 2013-07-08
Content Security Management Appliance MEDIUM 6.8
CVE-2013-3395

Cross-site request forgery (CSRF) vulnerability in the web framework on Cisco IronPort Web Security Appliance (WSA) devices, Email Security Appliance…

Mitigation only
Fix from $1,600 2013-07-02
Services MEDIUM 6.8
CVE-2013-2158

Cross-site request forgery (CSRF) vulnerability in the Services module 6.x-3.x and 7.x-3.x before 7.x-3.4 for Drupal allows remote attackers to hijac…

Mitigation only
Fix from $1,600 2013-07-01
Unified Communications Manager MEDIUM 6.8
CVE-2013-3397

Cross-site request forgery (CSRF) vulnerability in the Unified Serviceability component in Cisco Unified Communications Manager (CUCM) allows remote …

Mitigation only
Fix from $1,600 2013-06-26
Wp Maintenance Mode Plugin MEDIUM 6.8
CVE-2013-3250

Cross-site request forgery (CSRF) vulnerability in the WP Maintenance Mode plugin before 1.8.8 for WordPress allows remote attackers to hijack the au…

Fix: after 1.8.7
Fix from $1,600 2013-06-21
Data Studio MEDIUM 6.8
CVE-2013-2980

Cross-site request forgery (CSRF) vulnerability in the Web Console in IBM Data Studio 3.1.0 and 3.1.1 allows remote attackers to hijack the authentic…

Mitigation only
Fix from $1,600 2013-06-17
Viostor Network Video Recorder MEDIUM 6.8
CVE-2013-0144

Cross-site request forgery (CSRF) vulnerability in cgi-bin/create_user.cgi on QNAP VioStor NVR devices with firmware 4.0.3 allows remote attackers to…

Mitigation only
Fix from $1,600 2013-06-07
Login With Ajax MEDIUM 6.8
CVE-2013-2707

Cross-site request forgery (CSRF) vulnerability in the Login With Ajax plugin before 3.1 for WordPress allows remote attackers to hijack the authenti…

Patch available
Fix from $1,600 2013-05-10
Groundwork Monitor MEDIUM 6.8
CVE-2013-3513

Multiple cross-site request forgery (CSRF) vulnerabilities in the Noma component in GroundWork Monitor Enterprise 6.7.0 allow remote attackers to hij…

Mitigation only
Fix from $1,600 2013-05-08
Facebook Members MEDIUM 6.8
CVE-2013-2703

Cross-site request forgery (CSRF) vulnerability in the Facebook Members plugin before 5.0.5 for WordPress allows remote attackers to hijack the authe…

Fix: after 5.0.4
Fix from $1,600 2013-05-05
Easy Adsense Lite MEDIUM 6.8
CVE-2013-2702

Cross-site request forgery (CSRF) vulnerability in the Easy AdSense Lite plugin before 6.10 for WordPress allows remote attackers to hijack the authe…

Fix: after 6.06
Fix from $1,600 2013-05-05
Foursquare Checkins MEDIUM 6.8
CVE-2013-2709

Cross-site request forgery (CSRF) vulnerability in the FourSquare Checkins plugin before 1.3 for WordPress allows remote attackers to hijack the auth…

Fix: after 1.2
Fix from $1,600 2013-04-26
All In On Webmaster MEDIUM 6.8
CVE-2013-2696

Cross-site request forgery (CSRF) vulnerability in the All in One Webmaster plugin before 8.2.4 for WordPress allows remote attackers to hijack the a…

Fix: after 8.2.3
Fix from $1,600 2013-04-25
Cybozu Office MEDIUM 6.8
CVE-2013-2305

Cross-site request forgery (CSRF) vulnerability in Cybozu Office before 8.1.6 and 9.x before 9.3.0, Cybozu Dezie before 8.0.7, and Cybozu Mailwise be…

Fix: after 8.0.6
Fix from $1,600 2013-04-25
Cybozu Office MEDIUM 6.8
CVE-2013-3269

Cross-site request forgery (CSRF) vulnerability in Cybozu Office before 8.1.6 and 9.x before 9.3.0 allows remote attackers to hijack the authenticati…

Fix: after 8
Fix from $1,600 2013-04-25
Imanager MEDIUM 6.8
CVE-2013-1088

Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arb…

Fix: after 2.7
Fix from $1,600 2013-04-24