Vulnerability index

Browse CVEs

7,378 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
MEDIUM 6.0 CVE-2013-4050 Cross-site request forgery (CSRF) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated use… Lotus Domino Mitigation only Fix from $1,6002013-11-08 MEDIUM 6.8 CVE-2013-6346 Cross-site request forgery (CSRF) vulnerability in the ZCC page in Novell ZENworks Configuration Management (ZCM) before 11.2.4 allows remote attacke… Zenworks Configuration Management after 11.2.3 Fix from $1,6002013-11-02 MEDIUM 6.8 CVE-2013-2701 Cross-site request forgery (CSRF) vulnerability in the Social Sharing Toolkit plugin 2.1.1 for WordPress allows remote attackers to hijack the authen… Social Sharing Toolkit Plugin Mitigation only Fix from $1,6002013-11-01 MEDIUM 6.8 CVE-2013-5977 Cross-site request forgery (CSRF) vulnerability in Cart66Product.php in the Cart66 Lite plugin before 1.5.1.15 for WordPress allows remote attackers … Cart66 Lite Plugin after 1.5.1.14 Fix from $1,6002013-11-01 MEDIUM 6.8 CVE-2012-0826 Cross-site request forgery (CSRF) vulnerability in the Aggregator module in Drupal 6.x before 6.23 and 7.x before 7.11 allows remote attackers to hij… Drupal Mitigation only Fix from $1,6002013-10-28 MEDIUM 6.8 CVE-2013-6018 Cross-site request forgery (CSRF) vulnerability in login.jsp in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to hijack the authenticati… Taxweb Mitigation only Fix from $1,6002013-10-28 MEDIUM 6.8 CVE-2013-1734 Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.… Bugzilla Patch available Fix from $1,6002013-10-24 MEDIUM 6.8 CVE-2013-1733 Cross-site request forgery (CSRF) vulnerability in process_bug.cgi in Bugzilla 4.4.x before 4.4.1 allows remote attackers to hijack the authenticatio… Bugzilla Patch available Fix from $1,6002013-10-24 MEDIUM 5.1 CVE-2013-4689 J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1R before 12.1R6, 12.1X44 before 12.1X44-D15, 12.1x45 before 12.1X45-D10, 12.2 before 1… Junos after 10.4 Fix from $1,6002013-10-17 MEDIUM 6.8 CVE-2013-4056 Cross-site request forgery (CSRF) vulnerability in the Data Quality Console and Information Analyzer components in IBM InfoSphere Information Server … Infosphere Information Server Mitigation only Fix from $1,6002013-10-13 MEDIUM 6.8 CVE-2013-4306 Cross-site request forgery (CSRF) vulnerability in api/ApiQueryCheckUser.php in the CheckUser extension for MediaWiki, possibly Checkuser before 2.3,… Mediawiki 1.19.8 / 1.20.7+ Fix from $1,6002013-10-11 MEDIUM 6.8 CVE-2013-0736 Multiple cross-site request forgery (CSRF) vulnerabilities in the Mingle Forum plugin 1.0.34 and possibly earlier for WordPress allow remote attacker… Mingle Forum after 1.0.34 Fix from $1,6002013-10-09 MEDIUM 6.8 CVE-2012-4084 Cross-site request forgery (CSRF) vulnerability in the web-management interface in the fabric interconnect (FI) component in Cisco Unified Computing … Unified Computing System Mitigation only Fix from $1,6002013-10-05 MEDIUM 6.8 CVE-2013-3540 Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/usrgrp.cgi in AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD,… Airlive Od 2025hd No fix yet Fix from $1,6002013-10-04 MEDIUM 6.8 CVE-2013-3690EPSS 12% Cross-site request forgery (CSRF) vulnerability in cgi-bin/users.cgi in Brickcom FB-100Ap, WCB-100Ap, MD-100Ap, WFB-100Ap, OB-100Ae, OSD-040E, and po… 100ap Device Firmware Mitigation only Fix from $1,6002013-10-01 MEDIUM 6.8 CVE-2013-3963 Cross-site request forgery (CSRF) vulnerability in goform/usermanage in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P… Gxv Device Firmware after 1.0.4.43 Fix from $1,6002013-10-01 MEDIUM 6.8 CVE-2013-3539EPSS 9% Cross-site request forgery (CSRF) vulnerability in the command/user.cgi in Sony SNC CH140, SNC CH180, SNC CH240, SNC CH280, SNC DH140, SNC DH140T, SN… Airlive Wl2600cam No fix yet Fix from $1,6002013-10-01 MEDIUM 6.8 CVE-2013-0598 Cross-site request forgery (CSRF) vulnerability in the Web Client in IBM Rational ClearQuest 7.1 before 7.1.2.12, 8.0 before 8.0.0.8, and 8.0.1 befor… Rational Clearquest Mitigation only Fix from $1,6002013-09-28 MEDIUM 6.8 CVE-2013-5937 Cross-site request forgery (CSRF) vulnerability in the Click2Sell Suite module 6.x-1.x for Drupal allows remote attackers to hijack the authenticatio… Click2sell Suite Module Mitigation only Fix from $1,6002013-09-25 MEDIUM 6.8 CVE-2013-5696EPSS 8% inc/central.class.php in GLPI before 0.84.2 does not attempt to make install/install.php unavailable after an installation is completed, which allows… Glpi after 0.84.1 Fix from $1,6002013-09-23 MEDIUM 6.8 CVE-2013-5494 Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Unified MeetingPlace Solution, as used in Unified MeetingPlace Web Conf… Unified Meetingplace Mitigation only Fix from $1,6002013-09-16 MEDIUM 6.8 CVE-2013-5672 Multiple cross-site request forgery (CSRF) vulnerabilities in the IndiaNIC Testimonial plugin 2.2 for WordPress allow remote attackers to hijack the … Testimonial Plugin No fix yet Fix from $1,6002013-09-10 MEDIUM 6.8 CVE-2013-5708 Coursemill Learning Management System (LMS) 6.8 constructs secret tokens based on time values, which makes it easier for remote attackers to conduct … Coursemill Learning Management System No fix yet Fix from $1,6002013-09-06 MEDIUM 6.8 CVE-2013-3605 Cross-site request forgery (CSRF) vulnerability in Coursemill Learning Management System (LMS) 6.6 allows remote attackers to hijack the authenticati… Coursemill Learning Management System Mitigation only Fix from $1,6002013-09-06 MEDIUM 6.8 CVE-2013-5471 Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Global Site Selector (GSS) allows remote attackers to hijack the authen… Global Site Selector Mitigation only Fix from $1,6002013-09-05 MEDIUM 6.8 CVE-2013-3479 Cross-site request forgery (CSRF) vulnerability in the ShareThis plugin before 7.0.6 for WordPress allows remote attackers to hijack the authenticati… Sharethis after 7.0.5 Fix from $1,6002013-09-05 MEDIUM 6.8 CVE-2013-3472 Cross-site request forgery (CSRF) vulnerability in the Enterprise License Manager (ELM) in Cisco Unified Communications Manager (CM) allows remote at… Unified Communications Manager Mitigation only Fix from $1,6002013-08-29 MEDIUM 6.8 CVE-2013-3583 Cross-site request forgery (CSRF) vulnerability in saveProperties.html in Corporater EPM Suite allows remote attackers to hijack the authentication o… Epm Suite Mitigation only Fix from $1,6002013-08-28 MEDIUM 6.8 CVE-2013-3029 Cross-site request forgery (CSRF) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 befo… Websphere Application Server Mitigation only Fix from $1,6002013-08-21 MEDIUM 6.8 CVE-2013-5316 Cross-site request forgery (CSRF) vulnerability in RiteCMS 1.0.0 allows remote attackers to hijack the authentication of administrators for requests … Ritecms No fix yet Fix from $1,6002013-08-20