Vulnerability index

Browse CVEs

7,378 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
MEDIUM 6.8 CVE-2013-5313 Cross-site request forgery (CSRF) vulnerability in core/admin/modules/users/update.php in BigTree CMS 4.0 RC2 and earlier allows remote attackers to … Bigtree Cms after 4.0 Fix from $1,6002013-08-19 MEDIUM 6.8 CVE-2013-4881 Cross-site request forgery (CSRF) vulnerability in core/admin/modules/users/create.php in BigTree CMS 4.0 RC2 and earlier allows remote attackers to … Bigtree Cms after 4.0 Fix from $1,6002013-08-19 MEDIUM 6.8 CVE-2013-3253 Cross-site request forgery (CSRF) vulnerability in admin/setting.php in the Xhanch - My Twitter plugin before 2.7.7 for WordPress allows remote attac… My Twitter after 2.7.6 Fix from $1,6002013-08-09 MEDIUM 6.8 CVE-2013-3256 Cross-site request forgery (CSRF) vulnerability in the Shareaholic SexyBookmarks plugin 6.1.4.0 for WordPress allows remote attackers to hijack the a… Sexybookmarks Mitigation only Fix from $1,6002013-08-08 MEDIUM 6.0 CVE-2013-3992 Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere BigInsights 2.0 through 2.1 allows remote authenticated users to hijack the authent… Infosphere Biginsights Mitigation only Fix from $1,6002013-08-06 MEDIUM 6.8 CVE-2013-3450 Cross-site request forgery (CSRF) vulnerability in the User WebDialer page in Cisco Unified Communications Manager (Unified CM) allows remote attacke… Unified Communications Manager Mitigation only Fix from $1,6002013-08-05 MEDIUM 6.8 CVE-2013-3451 Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco Unified Communications Manager (Unified CM) allow remote attackers to hijack the … Unified Communications Manager Mitigation only Fix from $1,6002013-08-05 MEDIUM 6.8 CVE-2013-4911 Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to hijack the authentic… Wincc Mitigation only Fix from $1,6002013-08-01 MEDIUM 6.0 CVE-2013-4671 Cross-site request forgery (CSRF) vulnerability in the management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allows remote auth… Web Gateway after 5.1 Fix from $1,6002013-08-01 MEDIUM 6.8 CVE-2013-4871 Cross-site request forgery (CSRF) vulnerability in the TEQneers SEO Enhancements (tq_seo) extension before 5.0.1 for TYPO3 allows remote attackers to… Tq Seo after 5.0.0 Fix from $1,6002013-07-20 MEDIUM 6.8 CVE-2013-3420 Cross-site request forgery (CSRF) vulnerability in the web framework on the Cisco Identity Services Engine (ISE) allows remote attackers to hijack th… Identity Services Engine Software Mitigation only Fix from $1,6002013-07-18 MEDIUM 6.8 CVE-2013-3491 Multiple cross-site request forgery (CSRF) vulnerabilities in the Sharebar plugin 1.2.5 for WordPress allow remote attackers to hijack the authentica… Sharebar Mitigation only Fix from $1,6002013-07-16 MEDIUM 6.8 CVE-2013-3424 Cross-site request forgery (CSRF) vulnerability in Administration and View pages in Cisco Secure Access Control System (ACS) allows remote attackers … Secure Access Control System Mitigation only Fix from $1,6002013-07-12 MEDIUM 6.8 CVE-2013-2704 Cross-site request forgery (CSRF) vulnerability in the Dropdown Menu Widget plugin 1.9.1 for WordPress allows remote attackers to hijack the authenti… Dropdown Menu Widget Mitigation only Fix from $1,6002013-07-12 MEDIUM 5.1 CVE-2013-1414 Multiple cross-site request forgery (CSRF) vulnerabilities in Fortinet FortiOS on FortiGate firewall devices before 4.3.13 and 5.x before 5.0.2 allow… Fortios after 4.3.12 Fix from $1,6002013-07-08 MEDIUM 6.8 CVE-2013-3395 Cross-site request forgery (CSRF) vulnerability in the web framework on Cisco IronPort Web Security Appliance (WSA) devices, Email Security Appliance… Content Security Management Appliance Mitigation only Fix from $1,6002013-07-02 MEDIUM 6.8 CVE-2013-2158 Cross-site request forgery (CSRF) vulnerability in the Services module 6.x-3.x and 7.x-3.x before 7.x-3.4 for Drupal allows remote attackers to hijac… Services Mitigation only Fix from $1,6002013-07-01 MEDIUM 6.8 CVE-2013-3397 Cross-site request forgery (CSRF) vulnerability in the Unified Serviceability component in Cisco Unified Communications Manager (CUCM) allows remote … Unified Communications Manager Mitigation only Fix from $1,6002013-06-26 MEDIUM 6.8 CVE-2013-3250 Cross-site request forgery (CSRF) vulnerability in the WP Maintenance Mode plugin before 1.8.8 for WordPress allows remote attackers to hijack the au… Wp Maintenance Mode Plugin after 1.8.7 Fix from $1,6002013-06-21 MEDIUM 6.8 CVE-2013-2980 Cross-site request forgery (CSRF) vulnerability in the Web Console in IBM Data Studio 3.1.0 and 3.1.1 allows remote attackers to hijack the authentic… Data Studio Mitigation only Fix from $1,6002013-06-17 MEDIUM 6.8 CVE-2013-0144 Cross-site request forgery (CSRF) vulnerability in cgi-bin/create_user.cgi on QNAP VioStor NVR devices with firmware 4.0.3 allows remote attackers to… Viostor Network Video Recorder Mitigation only Fix from $1,6002013-06-07 MEDIUM 6.8 CVE-2013-2707 Cross-site request forgery (CSRF) vulnerability in the Login With Ajax plugin before 3.1 for WordPress allows remote attackers to hijack the authenti… Login With Ajax Patch available Fix from $1,6002013-05-10 MEDIUM 6.8 CVE-2013-3513 Multiple cross-site request forgery (CSRF) vulnerabilities in the Noma component in GroundWork Monitor Enterprise 6.7.0 allow remote attackers to hij… Groundwork Monitor Mitigation only Fix from $1,6002013-05-08 MEDIUM 6.8 CVE-2013-2703 Cross-site request forgery (CSRF) vulnerability in the Facebook Members plugin before 5.0.5 for WordPress allows remote attackers to hijack the authe… Facebook Members after 5.0.4 Fix from $1,6002013-05-05 MEDIUM 6.8 CVE-2013-2702 Cross-site request forgery (CSRF) vulnerability in the Easy AdSense Lite plugin before 6.10 for WordPress allows remote attackers to hijack the authe… Easy Adsense Lite after 6.06 Fix from $1,6002013-05-05 MEDIUM 6.8 CVE-2013-2709 Cross-site request forgery (CSRF) vulnerability in the FourSquare Checkins plugin before 1.3 for WordPress allows remote attackers to hijack the auth… Foursquare Checkins after 1.2 Fix from $1,6002013-04-26 MEDIUM 6.8 CVE-2013-2696 Cross-site request forgery (CSRF) vulnerability in the All in One Webmaster plugin before 8.2.4 for WordPress allows remote attackers to hijack the a… All In On Webmaster after 8.2.3 Fix from $1,6002013-04-25 MEDIUM 6.8 CVE-2013-2305 Cross-site request forgery (CSRF) vulnerability in Cybozu Office before 8.1.6 and 9.x before 9.3.0, Cybozu Dezie before 8.0.7, and Cybozu Mailwise be… Cybozu Office after 8.0.6 Fix from $1,6002013-04-25 MEDIUM 6.8 CVE-2013-3269 Cross-site request forgery (CSRF) vulnerability in Cybozu Office before 8.1.6 and 9.x before 9.3.0 allows remote attackers to hijack the authenticati… Cybozu Office after 8 Fix from $1,6002013-04-25 MEDIUM 6.8 CVE-2013-1088 Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arb… Imanager after 2.7 Fix from $1,6002013-04-24