Vulnerability index

Browse CVEs

7,378 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
MEDIUM 6.8 CVE-2011-5311 Cross-site request forgery (CSRF) vulnerability in pages.php in Wikipad 1.6.0 allows remote attackers to hijack the authentication of administrators … Wikipad No fix yet Fix from $1,6002015-01-01 MEDIUM 6.8 CVE-2011-5306 Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/setup_edit.cgi in CosmoShop ePRO 10.05.00 allows remote attackers to hijack the auth… Cosmoshop No fix yet Fix from $1,6002015-01-01 MEDIUM 6.8 CVE-2011-5302 Cross-site request forgery (CSRF) vulnerability in adm/admin_edit.php in PHPDug 2.0.0 allows remote attackers to hijack the authentication of adminis… Phpdug No fix yet Fix from $1,6002015-01-01 MEDIUM 6.8 CVE-2011-5300 Cross-site request forgery (CSRF) vulnerability in admin/setup/config/users.php in poMMo Aardvark PR16.1 allows remote attackers to hijack the authen… Pommo Ardvark No fix yet Fix from $1,6002015-01-01 MEDIUM 6.8 CVE-2011-5298 Multiple cross-site request forgery (CSRF) vulnerabilities in Argyle Social 2011-04-26 allow remote attackers to hijack the authentication of adminis… Argyle Social No fix yet Fix from $1,6002015-01-01 MEDIUM 6.8 CVE-2014-9431 Multiple cross-site request forgery (CSRF) vulnerabilities in Smoothwall Express 3.1 and 3.0 SP3 allow remote attackers to hijack the authentication … Smoothwall No fix yet Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-8144 Cross-site request forgery (CSRF) vulnerability in doorkeeper before 1.4.1 allows remote attackers to hijack the authentication of unspecified victim… Doorkeeper after 1.4.0 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2011-5284 Cross-site request forgery (CSRF) vulnerability in the web management interface in httpd/cgi-bin/shutdown.cgi in Smoothwall Express 3.1 and 3.0 SP3 a… Smoothwall after 3.1 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9401 Cross-site request forgery (CSRF) vulnerability in the WP Limit Posts Automatically plugin 0.7 and earlier for WordPress allows remote attackers to h… Wp Limit Posts Automatically after 0.7 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9400 Multiple cross-site request forgery (CSRF) vulnerabilities in the Wp Unique Article Header Image plugin 1.0 and earlier for WordPress allow remote at… Wp Unique Article Header Image after 1.0 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9399 Cross-site request forgery (CSRF) vulnerability in the TweetScribe plugin 1.1 and earlier for WordPress allows remote attackers to hijack the authent… Tweetscribe after 1.1 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9398 Cross-site request forgery (CSRF) vulnerability in the Twitter LiveBlog plugin 1.1.2 and earlier for WordPress allows remote attackers to hijack the … Twitter Liveblog after 1.1.2 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9397 Cross-site request forgery (CSRF) vulnerability in the twimp-wp plugin for WordPress allows remote attackers to hijack the authentication of administ… Twimp Wp after 0.1 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9396 Multiple cross-site request forgery (CSRF) vulnerabilities in the SimpleFlickr plugin 3.0.3 and earlier for WordPress allow remote attackers to hijac… Simpleflickr after 3.0.3 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9395 Multiple cross-site request forgery (CSRF) vulnerabilities in the Simplelife plugin 1.2 and earlier for WordPress allow remote attackers to hijack th… Simplelife after 1.2 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9394 Multiple cross-site request forgery (CSRF) vulnerabilities in the PWGRandom plugin 1.11 and earlier for WordPress allow remote attackers to hijack th… Pwgrandom after 1.11 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9393 Multiple cross-site request forgery (CSRF) vulnerabilities in the Post to Twitter plugin 0.7 and earlier for WordPress allow remote attackers to hija… Post To Twitter after 0.7 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9391 Multiple cross-site request forgery (CSRF) vulnerabilities in the gSlideShow plugin 0.1 and earlier for WordPress allow remote attackers to hijack th… Gslideshow after 0.1 Fix from $1,6002014-12-31 MEDIUM 6.8 CVE-2014-9392 Cross-site request forgery (CSRF) vulnerability in the PictoBrowser (pictobrowser-gallery) plugin 0.3.1 and earlier for WordPress allows remote attac… Pictobrowser after 0.3.1 Fix from $1,6002014-12-31 MEDIUM 6.0 CVE-2014-6168 Cross-site request forgery (CSRF) vulnerability in IBM Security Identity Manager 5.1 before 5.1.0.15 IF0056 allows remote authenticated users to hija… Security Identity Manager Mitigation only Fix from $1,6002014-12-29 MEDIUM 6.8 CVE-2012-1415 Cross-site request forgery (CSRF) vulnerability in lib/logout.php in DFLabs PTK 1.0.5 and earlier allows remote attackers to hijack the authenticatio… Ptk after 1.0.5 Fix from $1,6002014-12-28 MEDIUM 6.8 CVE-2012-1203 Cross-site request forgery (CSRF) vulnerability in starnet/index.php in SyndeoCMS 3.0 and earlier allows remote attackers to hijack the authenticatio… Syndeocms after 3.0.00 Fix from $1,6002014-12-28 MEDIUM 6.8 CVE-2014-9414 The W3 Total Cache plugin before 0.9.4.1 for WordPress does not properly handle empty nonces, which allows remote attackers to conduct cross-site req… W3 Total Cache after 0.9.4 Fix from $1,6002014-12-24 MEDIUM 6.8 CVE-2014-9413 Multiple cross-site request forgery (CSRF) vulnerabilities in the IP Ban (simple-ip-ban) plugin 1.2.3 for WordPress allow remote attackers to hijack … Ip Ban Patch available Fix from $1,6002014-12-24 MEDIUM 6.8 CVE-2014-9334 Multiple cross-site request forgery (CSRF) vulnerabilities in the Bird Feeder plugin 1.2.3 for WordPress allow remote attackers to hijack the authent… Bird Feeder No fix yet Fix from $1,6002014-12-24 MEDIUM 6.0 CVE-2014-6187 Multiple cross-site request forgery (CSRF) vulnerabilities in IBM WebSphere Service Registry and Repository (WSRR) 6.3.x before 6.3.0.5, 7.0.x before… Websphere Service Registry And Repository Mitigation only Fix from $1,6002014-12-24 MEDIUM 6.8 CVE-2014-5217 Cross-site request forgery (CSRF) vulnerability in nps/servlet/webacc in the Administration Console server in NetIQ Access Manager (NAM) 4.x before 4… Access Manager No fix yet Fix from $1,6002014-12-23 MEDIUM 6.8 CVE-2014-9407 Multiple cross-site request forgery (CSRF) vulnerabilities in Revive Adserver before 3.0.5 allow remote attackers to hijack the authentication of adm… Revive Adserver after 3.0.4 Fix from $1,6002014-12-19 MEDIUM 6.8 CVE-2014-9368 Cross-site request forgery (CSRF) vulnerability in the twitterDash plugin 2.1 and earlier for WordPress allows remote attackers to hijack the authent… Twitterdash after 2.1 Fix from $1,6002014-12-19 MEDIUM 6.8 CVE-2014-9341 Multiple cross-site request forgery (CSRF) vulnerabilities in the yURL ReTwitt plugin 1.4 and earlier for WordPress allow remote attackers to hijack … Yurl Retwitt No fix yet Fix from $1,6002014-12-19