Vulnerability index

Browse CVEs

7,378 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
MEDIUM 6.8 CVE-2015-3363 Cross-site request forgery (CSRF) vulnerability in the Contact Form Fields module before 6.x-2.3 for Drupal allows remote attackers to hijack the aut… Contact Form Fields after 6.x-2.2 Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2015-3356 Multiple cross-site request forgery (CSRF) vulnerabilities in the Tadaa! module before 7.x-1.4 for Drupal allow remote attackers to hijack the authen… Tadaa\! after 7.x-1.3 Fix from $1,6002015-04-21 MEDIUM 5.8 CVE-2015-3354 Cross-site request forgery (CSRF) vulnerability in the Wishlist module before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Drupal allows remote attackers t… Wishlist after 6.x-2.6 Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2015-3355 Multiple cross-site request forgery (CSRF) vulnerabilities in the Batch Jobs module before 7.x-1.2 for Drupal allow remote attackers to hijack the au… Batch Jobs after 7.x-1.1 Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2015-3352 Multiple cross-site request forgery (CSRF) vulnerabilities in the Jammer module before 6.x-1.8 and 7.x-1.x before 7.x-1.4 for Drupal allow remote att… Jammer after 6.x-1.7 Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2015-3351 Multiple cross-site request forgery (CSRF) vulnerabilities in the Log Watcher module before 6.x-1.2 for Drupal allow remote attackers to hijack the a… Log Watcher after 6.x-1.x-dev Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2015-3350 Cross-site request forgery (CSRF) vulnerability in the Todo Filter module before 6.x-1.1 and 7.x-1.x before 7.x-1.1 for Drupal allows remote attacker… Todo Filter after 6.x-1.0 Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2015-3349 Multiple cross-site request forgery (CSRF) vulnerabilities in the Htaccess module before 7.x-2.3 for Drupal allow remote attackers to hijack the auth… Htaccess after 7.x-2.2 Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2015-3347 Cross-site request forgery (CSRF) vulnerability in the Cloudwords for Multilingual Drupal module before 7.x-2.3 for Drupal allows remote attackers to… Cloudwords For Multilingual after 7.x-2.2 Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2015-3343 Cross-site request forgery (CSRF) vulnerability in the OPAC module before 7.x-2.3 for Drupal allows remote attackers to hijack the authentication of … Opac after 7.x-2.0 Fix from $1,6002015-04-21 MEDIUM 6.8 CVE-2014-5361 Multiple cross-site request forgery (CSRF) vulnerabilities in Landesk Management Suite 9.6 and earlier allow remote attackers to hijack the authentic… Landesk Management Suite after 9.6 Fix from $1,6002015-04-21 HIGH 8.8 CVE-2015-0970 Cross-site request forgery (CSRF) vulnerability in SearchBlox before 8.2 allows remote attackers to hijack the authentication of arbitrary users. Searchblox after 8.1 Fix from $1,9502015-04-18 MEDIUM 6.8 CVE-2015-0700 Cross-site request forgery (CSRF) vulnerability in the Dashboard page in the monitoring-and-report section in Cisco Secure Access Control Server Solu… Secure Access Control Server Solution Engine Mitigation only Fix from $1,6002015-04-17 MEDIUM 6.8 CVE-2015-2940 Cross-site request forgery (CSRF) vulnerability in the CheckUser extension for MediaWiki allows remote attackers to hijack the authentication of cert… Checkuser Patch available Fix from $1,6002015-04-13 MEDIUM 6.8 CVE-2015-2295EPSS 66% Cross-site request forgery (CSRF) vulnerability in system_firmware_restorefullbackup.php in the WebGUI in pfSense before 2.2.1 allows remote attacker… Pfsense after 2.2 Fix from $1,6002015-04-10 MEDIUM 6.8 CVE-2015-0905 Cross-site request forgery (CSRF) vulnerability in bBlog allows remote attackers to hijack the authentication of arbitrary users. Bblog Mitigation only Fix from $1,6002015-04-08 MEDIUM 6.8 CVE-2015-2838 Cross-site request forgery (CSRF) vulnerability in Nitro API in Citrix NetScaler before 10.5 build 52.3nc allows remote attackers to hijack the authe… Netscaler No fix yet Fix from $1,6002015-04-03 MEDIUM 6.8 CVE-2015-2755 Multiple cross-site request forgery (CSRF) vulnerabilities in the AB Google Map Travel (AB-MAP) plugin before 4.0 for WordPress allow remote attacker… Ab Google Map Travel after 3.4 Fix from $1,6002015-04-01 MEDIUM 6.8 CVE-2015-0807 The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x … Firefox after 36.0.4 Fix from $1,6002015-04-01 MEDIUM 6.8 CVE-2015-0985 Cross-site request forgery (CSRF) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to hijack the authentication of adm… 442sr Os Mitigation only Fix from $1,6002015-03-31 MEDIUM 6.8 CVE-2015-2770 Cross-site request forgery (CSRF) vulnerability in the command line page in Websense TRITON V-Series appliances before 8.0.0 allows remote attackers … V Series Appliances after 7.7 Fix from $1,6002015-03-27 MEDIUM 6.8 CVE-2015-2769 Multiple cross-site request forgery (CSRF) vulnerabilities in the Personal Email Manager (PEM) in Websense TRITON AP-EMAIL before 8.0.0 allow remote … Triton Ap Email after 7.8.3 Fix from $1,6002015-03-27 MEDIUM 6.8 CVE-2015-2759 Multiple cross-site request forgery (CSRF) vulnerabilities in the ePO extension in McAfee Data Loss Prevention Endpoint (DLPe) before 9.3 Patch 4 Hot… Data Loss Prevention Endpoint after 9.3.400 Fix from $1,6002015-03-27 MEDIUM 6.8 CVE-2015-2701 Cross-site request forgery (CSRF) vulnerability in CS-Cart 4.2.4 allows remote attackers to hijack the authentication of users for requests that chan… Cs Cart No fix yet Fix from $1,6002015-03-25 MEDIUM 6.8 CVE-2014-8925 Cross-site request forgery (CSRF) vulnerability in ClearQuest Web in IBM Rational ClearQuest 7.1.x before 7.1.2.17, 8.0.0.x before 8.0.0.14, and 8.0.… Rational Clearquest Patch available Fix from $1,6002015-03-25 MEDIUM 6.8 CVE-2015-2680 Cross-site request forgery (CSRF) vulnerability in MetalGenix GeniXCMS before 0.0.2 allows remote attackers to hijack the authentication of administr… Genixcms after 0.0.1 Fix from $1,6002015-03-23 MEDIUM 6.8 CVE-2015-2676 Cross-site request forgery (CSRF) vulnerability in the ASUS RT-G32 routers with firmware 2.0.2.6 and 2.0.3.2 allows remote attackers to hijack the au… Rt G32 Firmware No fix yet Fix from $1,6002015-03-23 MEDIUM 6.8 CVE-2015-2350 Cross-site request forgery (CSRF) vulnerability in MikroTik RouterOS 5.0 and earlier allows remote attackers to hijack the authentication of administ… Routeros after 5.0 Fix from $1,6002015-03-19 MEDIUM 6.8 CVE-2015-2334 Cross-site request forgery (CSRF) vulnerability in the Admin Control Panel (ACP) login in MyBB (aka MyBulletinBoard) before 1.8.4 allows remote attac… Mybb after 1.8.3 Fix from $1,6002015-03-18 MEDIUM 6.8 CVE-2015-2293 Multiple cross-site request forgery (CSRF) vulnerabilities in admin/class-bulk-editor-list-table.php in the WordPress SEO by Yoast plugin before 1.5.… Wordpress Seo after 1.5.6 Fix from $1,6002015-03-17