Vulnerability index

Browse CVEs

7,378 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Dsl 2640b Firmware MEDIUM 6.8
CVE-2012-1308

Cross-site request forgery (CSRF) vulnerability in redpass.cgi in D-Link DSL-2640B Firmware EU_4.00 allows remote attackers to hijack the authenticat…

No fix yet
Fix from $1,600 2012-10-08
Socialcms MEDIUM 6.8
CVE-2012-1416

Multiple cross-site request forgery (CSRF) vulnerabilities in SocialCMS 1.0.2 allow remote attackers to hijack the authentication of administrators f…

No fix yet
Fix from $1,600 2012-10-08
Dcs 2000 MEDIUM 6.8
CVE-2012-5319

Cross-site request forgery (CSRF) vulnerability in setup/security.cgi in D-Link DCS-900, DCS-2000, and DCS-5300 allows remote attackers to hijack the…

No fix yet
Fix from $1,600 2012-10-08
F\@st 2604 Firmware MEDIUM 6.8
CVE-2012-5320

Cross-site request forgery (CSRF) vulnerability in password.cgi in Sagem F@ST 2604 253180972B allows remote attackers to hijack the authentication of…

No fix yet
Fix from $1,600 2012-10-08
X7968 MEDIUM 6.8
CVE-2012-5323

Cross-site request forgery (CSRF) vulnerability in webconfig/admin_passwd/passwd.html/admin_passwd in Xavi X7968 allows remote attackers to hijack th…

Mitigation only
Fix from $1,600 2012-10-08
Lotus Notes Traveler MEDIUM 6.8
CVE-2012-5308

Cross-site request forgery (CSRF) vulnerability in servlet/traveler in IBM Lotus Notes Traveler through 8.5.3.3 Interim Fix 1 allows remote attackers…

No fix yet
Fix from $1,600 2012-10-08
Plume Cms MEDIUM 6.8
CVE-2012-1414

Cross-site request forgery (CSRF) vulnerability in manager/news.php in Plume CMS 1.2.4 and earlier allows remote attackers to hijack the authenticati…

Fix: after 1.2.4
Fix from $1,600 2012-10-07
Ftp Server MEDIUM 6.8
CVE-2012-2999

Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface in Cerberus FTP Server before 5.0.5.0 allow remote attackers to hijac…

Fix: after 5.0.4.3
Fix from $1,600 2012-10-04
Wolf Cms MEDIUM 6.8
CVE-2012-1897

Multiple cross-site request forgery (CSRF) vulnerabilities in Wolf CMS 0.75 and earlier allow remote attackers to hijack the authentication of admini…

Fix: after 0.7.5
Fix from $1,600 2012-10-01
Rational Team Concert MEDIUM 6.8
CVE-2012-0748

Multiple cross-site request forgery (CSRF) vulnerabilities in unspecified services in IBM Rational Team Concert (RTC) 4.x before 4.0.0.1 allow remote…

Mitigation only
Fix from $1,600 2012-10-01
WordPress MEDIUM 6.8
CVE-2012-4448

Cross-site request forgery (CSRF) vulnerability in wp-admin/index.php in WordPress 3.4.2 allows remote attackers to hijack the authentication of admi…

No fix yet
Fix from $1,600 2012-09-28
Enterprise Mrg MEDIUM 6.8
CVE-2012-2734

Multiple cross-site request forgery (CSRF) vulnerabilities in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG…

Fix: after 0.1.5192-4
Fix from $1,600 2012-09-28
Casper Suite MEDIUM 6.8
CVE-2012-4051

Multiple cross-site request forgery (CSRF) vulnerabilities in editAccount.html in the JAMF Software Server (JSS) interface in JAMF Casper Suite befor…

Fix: after 8.6
Fix from $1,600 2012-09-28
Open Conference Systems MEDIUM 6.8
CVE-2011-5195

Cross-site request forgery (CSRF) vulnerability in index/manager/fileUpload in Public Knowledge Project Open Conference Systems 2.3.4 and earlier all…

Fix: after 2.3.4
Fix from $1,600 2012-09-23
Open Journal Systems MEDIUM 6.8
CVE-2011-5196

Cross-site request forgery (CSRF) vulnerability in index/manager/fileUpload in Public Knowledge Project Open Journal Systems 2.3.6 and earlier allows…

Fix: after 2.3.6
Fix from $1,600 2012-09-23
Open Harvester Systems MEDIUM 6.8
CVE-2011-5197

Cross-site request forgery (CSRF) vulnerability in index/manager/fileUpload in Public Knowledge Project Open Harvester Systems 2.3.1 and earlier allo…

Fix: after 2.3.1
Fix from $1,600 2012-09-23
Admin\ MEDIUM 6.8
CVE-2012-1631

Cross-site request forgery (CSRF) vulnerability in the Admin:hover module for Drupal allows remote attackers to hijack the authentication of administ…

Patch available
Fix from $1,600 2012-09-20
Password Policy MEDIUM 6.8
CVE-2012-1633

Cross-site request forgery (CSRF) vulnerability in the Password Policy module before 6.x-1.4 and 7.x-1.0 beta3 for Drupal allows remote attackers to …

No fix yet
Fix from $1,600 2012-09-20
Vr Gpub MEDIUM 6.8
CVE-2012-5005

Cross-site request forgery (CSRF) vulnerability in admin/admin_options.php in VR GPub 4.0 allows remote attackers to hijack the authentication of adm…

No fix yet
Fix from $1,600 2012-09-19
H Sphere MEDIUM 6.8
CVE-2012-5004

Multiple cross-site request forgery (CSRF) vulnerabilities in Parallels H-Sphere 3.3 Patch 1 allow remote attackers to hijack the authentication of a…

No fix yet
Fix from $1,600 2012-09-19
Flexcms MEDIUM 6.8
CVE-2012-1901

Multiple cross-site request forgery (CSRF) vulnerabilities in FlexCMS 3.2.1 and earlier allow remote attackers to (1) hijack the authentication of us…

Fix: after 3.2.1
Fix from $1,600 2012-09-18
Simatic Pcs7 MEDIUM 6.8
CVE-2012-3028

Cross-site request forgery (CSRF) vulnerability in WebNavigator in Siemens WinCC 7.0 SP3 and earlier, as used in SIMATIC PCS7 and other products, all…

Fix: after 7.0
Fix from $1,600 2012-09-18
Content Lock MEDIUM 6.8
CVE-2012-2056

Cross-site request forgery (CSRF) vulnerability in the Content Lock module for Drupal allows remote attackers to hijack the authentication of unspeci…

No fix yet
Fix from $1,600 2012-09-17
Ubercart Bulk Stock Updater MEDIUM 6.8
CVE-2012-2057

Cross-site request forgery (CSRF) vulnerability in the Ubercart Bulk Stock Updater module for Drupal allows remote attackers to hijack the authentica…

Mitigation only
Fix from $1,600 2012-09-17
Admintools MEDIUM 6.8
CVE-2012-2061

Cross-site request forgery (CSRF) vulnerability in the Admin tools module for Drupal allows remote attackers to hijack the authentication of unspecif…

Mitigation only
Fix from $1,600 2012-09-17
Interscan Messaging Security Suite MEDIUM 6.8
CVE-2012-2996

Cross-site request forgery (CSRF) vulnerability in saveAccountSubTab.imss in Trend Micro InterScan Messaging Security Suite 7.1-Build_Win32_1394 allo…

No fix yet
Fix from $1,600 2012-09-17
Identity Services Engine Software MEDIUM 6.8
CVE-2012-3908

Multiple cross-site request forgery (CSRF) vulnerabilities in the ISE Administrator user interface (aka the Apache Tomcat interface) on Cisco Identit…

Mitigation only
Fix from $1,600 2012-09-16
Testlink MEDIUM 6.8
CVE-2012-2275

Multiple cross-site request forgery (CSRF) vulnerabilities in TestLink 1.9.3 and earlier allow remote attackers to hijack the authentication of users…

Fix: after 1.9.3
Fix from $1,600 2012-09-15
Webmin MEDIUM 6.8
CVE-2012-4893

Multiple cross-site request forgery (CSRF) vulnerabilities in file/show.cgi in Webmin 1.590 and earlier allow remote attackers to hijack the authenti…

Fix: after 1.590
Fix from $1,600 2012-09-11
Change And Configuration Management Database MEDIUM 6.8
CVE-2012-0714

Cross-site request forgery (CSRF) vulnerability in IBM Maximo Asset Management 6.2 through 7.5, as used in SmartCloud Control Desk, Tivoli Asset Mana…

Mitigation only
Fix from $1,600 2012-09-10