Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: cwe-352 Clear
ID Title
CVE-2017-8101 There is CSRF in Serendipity 2.0.5, allowing attackers to install any themes via a GET request.
There is CSRF in Serendipity 2.0.5, allowing attackers to install any themes via a GET request.
CVE-2017-7852 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7852)
vulnerability in csrf (CVE-2017-7852). Successful exploitation can lead to full system takeover.
CVE-2017-8082 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-8082)
vulnerability in csrf (CVE-2017-8082). Risk of unauthorized operations or information disclosure.
CVE-2016-0720 Cross-site request forgery (CSRF) vulnerability in pcsd web UI in pcs before 0.9.149.
Cross-site request forgery (CSRF) vulnerability in pcsd web UI in pcs before 0.9.149.
CVE-2017-7951 WonderCMS before 2.0.3 has CSRF because of lack of a token in an unspecified context.
WonderCMS before 2.0.3 has CSRF because of lack of a token in an unspecified context.
CVE-2017-7990 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7990)
vulnerability in csrf (CVE-2017-7990). Successful exploitation can lead to full system takeover.
CVE-2016-1161 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-1161)
vulnerability in csrf (CVE-2016-1161). Successful exploitation can lead to full system takeover.
CVE-2016-3734 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-3734)
vulnerability in csrf (CVE-2016-3734). Successful exploitation can lead to full system takeover.
CVE-2016-5401 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-5401)
vulnerability in csrf (CVE-2016-5401). Successful exploitation can lead to full system takeover.
CVE-2017-5156 Cross-Site Request Forgery (CSRF) in aveva (CVE-2017-5156)
vulnerability in aveva (CVE-2017-5156). Successful exploitation can lead to full system takeover.
CVE-2017-7881 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7881)
vulnerability in csrf (CVE-2017-7881). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
CVE-2017-7877 CSRF vulnerability in flatCore version 1.4.6 allows remote attackers to modify CMS configurations.
CSRF vulnerability in flatCore version 1.4.6 allows remote attackers to modify CMS configurations.
CVE-2015-7563 Cross-Site Request Forgery (CSRF) in csrf (CVE-2015-7563)
vulnerability in csrf (CVE-2015-7563). Successful exploitation can lead to full system takeover.
CVE-2016-4891 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4891)
vulnerability in csrf (CVE-2016-4891). Successful exploitation can lead to full system takeover.
CVE-2016-8718 Cross-Site Request Forgery (CSRF) in c (CVE-2016-8718)
vulnerability in c (CVE-2016-8718). Successful exploitation can lead to full system takeover.
CVE-2016-4319 Atlassian JIRA Server before 7.1.9 has CSRF in auditing/settings.
Atlassian JIRA Server before 7.1.9 has CSRF in auditing/settings.
CVE-2015-8255 Cross-Site Request Forgery (CSRF) in csrf (CVE-2015-8255)
vulnerability in csrf (CVE-2015-8255). Successful exploitation can lead to full system takeover.
CVE-2017-7571 public/rolechangeadmin in Faveo 1.9.3 allows CSRF. The impact is obtaining admin privileges.
public/rolechangeadmin in Faveo 1.9.3 allows CSRF. The impact is obtaining admin privileges.
CVE-2017-7446 HelpDEZk 1.1.1 has CSRF in admin/home#/person/ with an impact of obtaining admin privileges.
HelpDEZk 1.1.1 has CSRF in admin/home#/person/ with an impact of obtaining admin privileges.
CVE-2017-7447 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7447)
vulnerability in csrf (CVE-2017-7447). Successful exploitation can lead to full system takeover.
CVE-2016-6100 Cross-Site Request Forgery (CSRF) in ibm (CVE-2016-6100)
vulnerability in ibm (CVE-2016-6100). Successful exploitation can lead to full system takeover.
CVE-2017-7398 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7398)
vulnerability in csrf (CVE-2017-7398). Successful exploitation can lead to full system takeover.
CVE-2016-10313 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-10313)
vulnerability in csrf (CVE-2016-10313). Successful exploitation can lead to full system takeover.
CVE-2014-9136 Cross-Site Request Forgery (CSRF) in csrf (CVE-2014-9136)
vulnerability in csrf (CVE-2014-9136). Successful exploitation can lead to full system takeover.
CVE-2014-9137 Cross-Site Request Forgery (CSRF) in csrf (CVE-2014-9137)
vulnerability in csrf (CVE-2014-9137). Successful exploitation can lead to full system takeover.
CVE-2014-9694 Cross-Site Request Forgery (CSRF) in csrf (CVE-2014-9694)
vulnerability in csrf (CVE-2014-9694). Successful exploitation can lead to full system takeover.
CVE-2016-8917 Cross-Site Request Forgery (CSRF) in ibm (CVE-2016-8917)
vulnerability in ibm (CVE-2016-8917). Successful exploitation can lead to full system takeover.
CVE-2017-2688 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-2688)
vulnerability in csrf (CVE-2017-2688). Successful exploitation can lead to full system takeover.
CVE-2016-9127 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-9127)
vulnerability in csrf (CVE-2016-9127). Successful exploitation can lead to full system takeover.
CVE-2016-9455 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-9455)
vulnerability in csrf (CVE-2016-9455). Successful exploitation can lead to full system takeover.
CVE-2016-9456 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-9456)
vulnerability in csrf (CVE-2016-9456). Successful exploitation can lead to full system takeover.
CVE-2017-6002 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6002)
vulnerability in csrf (CVE-2017-6002). Successful exploitation can lead to full system takeover.
CVE-2017-6066 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6066)
vulnerability in csrf (CVE-2017-6066). Successful exploitation can lead to full system takeover.
CVE-2017-6068 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6068)
vulnerability in csrf (CVE-2017-6068). Successful exploitation can lead to full system takeover.
CVE-2017-6069 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6069)
vulnerability in csrf (CVE-2017-6069). Successful exploitation can lead to full system takeover.
CVE-2015-8623 Cross-Site Request Forgery (CSRF) in csrf (CVE-2015-8623)
vulnerability in csrf (CVE-2015-8623). Successful exploitation can lead to full system takeover.
CVE-2015-8624 Cross-Site Request Forgery (CSRF) in csrf (CVE-2015-8624)
vulnerability in csrf (CVE-2015-8624). Successful exploitation can lead to full system takeover.
CVE-2016-5758 Cross-Site Request Forgery (CSRF) in netiq (CVE-2016-5758)
vulnerability in netiq (CVE-2016-5758). Successful exploitation can lead to full system takeover.
CVE-2017-5874 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-5874)
vulnerability in csrf (CVE-2017-5874). Successful exploitation can lead to full system takeover.
CVE-2016-4504 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4504)
vulnerability in csrf (CVE-2016-4504). Successful exploitation can lead to full system takeover.
CVE-2016-4928 Cross-Site Request Forgery (CSRF) in juniper (CVE-2016-4928)
vulnerability in juniper (CVE-2016-4928). Successful exploitation can lead to full system takeover.
CVE-2017-6803 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6803)
vulnerability in csrf (CVE-2017-6803). Successful exploitation can lead to full system takeover.
CVE-2017-7178 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7178)
vulnerability in csrf (CVE-2017-7178). Successful exploitation can lead to full system takeover.
CVE-2017-3877 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-3877)
vulnerability in csrf (CVE-2017-3877). Data can be tampered with by attackers.
CVE-2017-0045 Cross-Site Request Forgery (CSRF) in microsoft (CVE-2017-0045)
vulnerability in microsoft (CVE-2017-0045). Confidential information can be exposed externally.
CVE-2017-6379 Cross-Site Request Forgery (CSRF) in drupal (CVE-2017-6379)
vulnerability in drupal (CVE-2017-6379). Successful exploitation can lead to full system takeover.
CVE-2017-6914 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6914)
vulnerability in csrf (CVE-2017-6914). Risk of unauthorized operations or information disclosure.
CVE-2017-6915 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6915)
vulnerability in csrf (CVE-2017-6915). Risk of unauthorized operations or information disclosure.
CVE-2017-6916 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6916)
vulnerability in csrf (CVE-2017-6916). Risk of unauthorized operations or information disclosure.
CVE-2017-6917 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6917)
vulnerability in csrf (CVE-2017-6917). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →