Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.0
CVE-2013-4050
Cross-site request forgery (CSRF) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated use…
Lotus Domino
Mitigation only
MEDIUM 6.8
CVE-2013-6346
Cross-site request forgery (CSRF) vulnerability in the ZCC page in Novell ZENworks Configuration Management (ZCM) before 11.2.4 allows remote attacke…
Zenworks Configuration Management
after 11.2.3
MEDIUM 6.8
CVE-2013-2701
Cross-site request forgery (CSRF) vulnerability in the Social Sharing Toolkit plugin 2.1.1 for WordPress allows remote attackers to hijack the authen…
Social Sharing Toolkit Plugin
Mitigation only
MEDIUM 6.8
CVE-2013-5977
Cross-site request forgery (CSRF) vulnerability in Cart66Product.php in the Cart66 Lite plugin before 1.5.1.15 for WordPress allows remote attackers …
Cart66 Lite Plugin
after 1.5.1.14
MEDIUM 6.8
CVE-2012-0826
Cross-site request forgery (CSRF) vulnerability in the Aggregator module in Drupal 6.x before 6.23 and 7.x before 7.11 allows remote attackers to hij…
Drupal
Mitigation only
MEDIUM 6.8
CVE-2013-6018
Cross-site request forgery (CSRF) vulnerability in login.jsp in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to hijack the authenticati…
Taxweb
Mitigation only
MEDIUM 6.8
CVE-2013-1734
Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.…
Bugzilla
Patch available
MEDIUM 6.8
CVE-2013-1733
Cross-site request forgery (CSRF) vulnerability in process_bug.cgi in Bugzilla 4.4.x before 4.4.1 allows remote attackers to hijack the authenticatio…
Bugzilla
Patch available
MEDIUM 5.1
CVE-2013-4689
J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1R before 12.1R6, 12.1X44 before 12.1X44-D15, 12.1x45 before 12.1X45-D10, 12.2 before 1…
Junos
after 10.4
MEDIUM 6.8
CVE-2013-4056
Cross-site request forgery (CSRF) vulnerability in the Data Quality Console and Information Analyzer components in IBM InfoSphere Information Server …
Infosphere Information Server
Mitigation only
MEDIUM 6.8
CVE-2013-4306
Cross-site request forgery (CSRF) vulnerability in api/ApiQueryCheckUser.php in the CheckUser extension for MediaWiki, possibly Checkuser before 2.3,…
Mediawiki
1.19.8 / 1.20.7+
MEDIUM 6.8
CVE-2013-0736
Multiple cross-site request forgery (CSRF) vulnerabilities in the Mingle Forum plugin 1.0.34 and possibly earlier for WordPress allow remote attacker…
Mingle Forum
after 1.0.34
MEDIUM 6.8
CVE-2012-4084
Cross-site request forgery (CSRF) vulnerability in the web-management interface in the fabric interconnect (FI) component in Cisco Unified Computing …
Unified Computing System
Mitigation only
MEDIUM 6.8
CVE-2013-3540
Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/usrgrp.cgi in AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD,…
Airlive Od 2025hd
No fix yet
MEDIUM 6.8
CVE-2013-3690EPSS 12%
Cross-site request forgery (CSRF) vulnerability in cgi-bin/users.cgi in Brickcom FB-100Ap, WCB-100Ap, MD-100Ap, WFB-100Ap, OB-100Ae, OSD-040E, and po…
100ap Device Firmware
Mitigation only
MEDIUM 6.8
CVE-2013-3963
Cross-site request forgery (CSRF) vulnerability in goform/usermanage in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P…
Gxv Device Firmware
after 1.0.4.43
MEDIUM 6.8
CVE-2013-3539EPSS 9%
Cross-site request forgery (CSRF) vulnerability in the command/user.cgi in Sony SNC CH140, SNC CH180, SNC CH240, SNC CH280, SNC DH140, SNC DH140T, SN…
Airlive Wl2600cam
No fix yet
MEDIUM 6.8
CVE-2013-0598
Cross-site request forgery (CSRF) vulnerability in the Web Client in IBM Rational ClearQuest 7.1 before 7.1.2.12, 8.0 before 8.0.0.8, and 8.0.1 befor…
Rational Clearquest
Mitigation only
MEDIUM 6.8
CVE-2013-5937
Cross-site request forgery (CSRF) vulnerability in the Click2Sell Suite module 6.x-1.x for Drupal allows remote attackers to hijack the authenticatio…
Click2sell Suite Module
Mitigation only
MEDIUM 6.8
CVE-2013-5696EPSS 8%
inc/central.class.php in GLPI before 0.84.2 does not attempt to make install/install.php unavailable after an installation is completed, which allows…
Glpi
after 0.84.1
MEDIUM 6.8
CVE-2013-5494
Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Unified MeetingPlace Solution, as used in Unified MeetingPlace Web Conf…
Unified Meetingplace
Mitigation only
MEDIUM 6.8
CVE-2013-5672
Multiple cross-site request forgery (CSRF) vulnerabilities in the IndiaNIC Testimonial plugin 2.2 for WordPress allow remote attackers to hijack the …
Testimonial Plugin
No fix yet
MEDIUM 6.8
CVE-2013-5708
Coursemill Learning Management System (LMS) 6.8 constructs secret tokens based on time values, which makes it easier for remote attackers to conduct …
Coursemill Learning Management System
No fix yet
MEDIUM 6.8
CVE-2013-3605
Cross-site request forgery (CSRF) vulnerability in Coursemill Learning Management System (LMS) 6.6 allows remote attackers to hijack the authenticati…
Coursemill Learning Management System
Mitigation only
MEDIUM 6.8
CVE-2013-5471
Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Global Site Selector (GSS) allows remote attackers to hijack the authen…
Global Site Selector
Mitigation only
MEDIUM 6.8
CVE-2013-3479
Cross-site request forgery (CSRF) vulnerability in the ShareThis plugin before 7.0.6 for WordPress allows remote attackers to hijack the authenticati…
Sharethis
after 7.0.5
MEDIUM 6.8
CVE-2013-3472
Cross-site request forgery (CSRF) vulnerability in the Enterprise License Manager (ELM) in Cisco Unified Communications Manager (CM) allows remote at…
Unified Communications Manager
Mitigation only
MEDIUM 6.8
CVE-2013-3583
Cross-site request forgery (CSRF) vulnerability in saveProperties.html in Corporater EPM Suite allows remote attackers to hijack the authentication o…
Epm Suite
Mitigation only
MEDIUM 6.8
CVE-2013-3029
Cross-site request forgery (CSRF) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 befo…
Websphere Application Server
Mitigation only
MEDIUM 6.8
CVE-2013-5316
Cross-site request forgery (CSRF) vulnerability in RiteCMS 1.0.0 allows remote attackers to hijack the authentication of administrators for requests …
Ritecms
No fix yet