Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: cwe-352 Clear
ID Title
CVE-2016-7822 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-7822)
vulnerability in csrf (CVE-2016-7822). Successful exploitation can lead to full system takeover.
CVE-2015-1786 Cross-Site Request Forgery (CSRF) in csrf (CVE-2015-1786)
vulnerability in csrf (CVE-2015-1786). Successful exploitation can lead to full system takeover.
CVE-2016-9991 Cross-Site Request Forgery (CSRF) in ibm (CVE-2016-9991)
vulnerability in ibm (CVE-2016-9991). Successful exploitation can lead to full system takeover.
CVE-2017-9517 atmail before 7.8.0.2 has CSRF, allowing an attacker to upload and import users via CSV.
atmail before 7.8.0.2 has CSRF, allowing an attacker to upload and import users via CSV.
CVE-2017-9518 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9518)
vulnerability in csrf (CVE-2017-9518). Successful exploitation can lead to full system takeover.
CVE-2017-9519 atmail before 7.8.0.2 has CSRF, allowing an attacker to create a user account.
atmail before 7.8.0.2 has CSRF, allowing an attacker to create a user account.
CVE-2017-9444 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9444)
vulnerability in csrf (CVE-2017-9444). Successful exploitation can lead to full system takeover.
CVE-2017-8836 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-8836)
vulnerability in csrf (CVE-2017-8836). Successful exploitation can lead to full system takeover.
CVE-2016-8229 Cross-Site Request Forgery (CSRF) in lenovo (CVE-2016-8229)
vulnerability in lenovo (CVE-2016-8229). Successful exploitation can lead to full system takeover.
CVE-2017-9379 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9379)
vulnerability in csrf (CVE-2017-9379). Successful exploitation can lead to full system takeover.
CVE-2017-9365 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9365)
vulnerability in csrf (CVE-2017-9365). Successful exploitation can lead to full system takeover.
CVE-2017-7917 Cross-Site Request Forgery (CSRF) in moxa (CVE-2017-7917)
vulnerability in moxa (CVE-2017-7917). Successful exploitation can lead to full system takeover.
CVE-2017-9033 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9033)
vulnerability in csrf (CVE-2017-9033). Successful exploitation can lead to full system takeover.
CVE-2015-3191 Cross-Site Request Forgery (CSRF) in csrf (CVE-2015-3191)
vulnerability in csrf (CVE-2015-3191). Successful exploitation can lead to full system takeover.
CVE-2017-5657 Cross-Site Request Forgery (CSRF) in apache (CVE-2017-5657)
vulnerability in apache (CVE-2017-5657). Successful exploitation can lead to full system takeover.
CVE-2016-4854 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4854)
vulnerability in csrf (CVE-2016-4854). Successful exploitation can lead to full system takeover.
CVE-2016-4904 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2016-4904)
vulnerability in wordpress (CVE-2016-4904). Successful exploitation can lead to full system takeover.
CVE-2017-6634 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-6634)
vulnerability in csrf (CVE-2017-6634). Successful exploitation can lead to full system takeover.
CVE-2017-7620 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7620)
vulnerability in csrf (CVE-2017-7620). Data can be tampered with by attackers.
CVE-2017-9062 In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API.
In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API.
CVE-2017-9064 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-9064)
vulnerability in wordpress (CVE-2017-9064). Successful exploitation can lead to full system takeover.
CVE-2016-3403 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-3403)
vulnerability in csrf (CVE-2016-3403). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
CVE-2017-7661 Cross-Site Request Forgery (CSRF) in apache (CVE-2017-7661)
vulnerability in apache (CVE-2017-7661). Successful exploitation can lead to full system takeover.
CVE-2017-7662 Cross-Site Request Forgery (CSRF) in apache (CVE-2017-7662)
vulnerability in apache (CVE-2017-7662). Successful exploitation can lead to full system takeover.
CVE-2017-8382 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-8382)
vulnerability in csrf (CVE-2017-8382). Risk of unauthorized operations or information disclosure.
CVE-2017-7491 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7491)
vulnerability in csrf (CVE-2017-7491). Risk of unauthorized operations or information disclosure.
CVE-2017-8928 mailcow 0.14, as used in "mailcow: dockerized" and other products, has CSRF.
mailcow 0.14, as used in "mailcow: dockerized" and other products, has CSRF.
CVE-2017-8930 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-8930)
vulnerability in csrf (CVE-2017-8930). Successful exploitation can lead to full system takeover.
CVE-2016-4876 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4876)
vulnerability in csrf (CVE-2016-4876). Successful exploitation can lead to full system takeover.
CVE-2016-4878 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4878)
vulnerability in csrf (CVE-2016-4878). Successful exploitation can lead to full system takeover.
CVE-2016-4879 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4879)
vulnerability in csrf (CVE-2016-4879). Successful exploitation can lead to full system takeover.
CVE-2016-4881 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4881)
vulnerability in csrf (CVE-2016-4881). Successful exploitation can lead to full system takeover.
CVE-2016-4882 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4882)
vulnerability in csrf (CVE-2016-4882). Successful exploitation can lead to full system takeover.
CVE-2016-4884 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4884)
vulnerability in csrf (CVE-2016-4884). Successful exploitation can lead to full system takeover.
CVE-2016-4885 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4885)
vulnerability in csrf (CVE-2016-4885). Successful exploitation can lead to full system takeover.
CVE-2016-4886 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4886)
vulnerability in csrf (CVE-2016-4886). Successful exploitation can lead to full system takeover.
CVE-2016-4887 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4887)
vulnerability in csrf (CVE-2016-4887). Successful exploitation can lead to full system takeover.
CVE-2016-9092 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-9092)
vulnerability in csrf (CVE-2016-9092). Successful exploitation can lead to full system takeover.
CVE-2016-5889 Cross-Site Request Forgery (CSRF) in ibm (CVE-2016-5889)
vulnerability in ibm (CVE-2016-5889). Successful exploitation can lead to full system takeover.
CVE-2017-5891 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-5891)
vulnerability in csrf (CVE-2017-5891). Successful exploitation can lead to full system takeover.
CVE-2017-8874 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-8874)
vulnerability in csrf (CVE-2017-8874). Successful exploitation can lead to full system takeover.
CVE-2017-8875 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-8875)
vulnerability in wordpress (CVE-2017-8875). Data can be tampered with by attackers.
CVE-2017-8848 Allen Disk 1.6 has CSRF in setpass.php with an impact of changing a password.
Allen Disk 1.6 has CSRF in setpass.php with an impact of changing a password.
CVE-2017-7431 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-7431)
vulnerability in csrf (CVE-2017-7431). Successful exploitation can lead to full system takeover.
CVE-2017-1194 Cross-Site Request Forgery (CSRF) in ibm (CVE-2017-1194)
vulnerability in ibm (CVE-2017-1194). Successful exploitation can lead to full system takeover.
CVE-2017-2097 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-2097)
vulnerability in csrf (CVE-2017-2097). Successful exploitation can lead to full system takeover.
CVE-2017-2102 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-2102)
vulnerability in csrf (CVE-2017-2102). Successful exploitation can lead to full system takeover.
CVE-2016-3691 Cross-Site Request Forgery (CSRF) in kallithea (CVE-2016-3691)
vulnerability in kallithea (CVE-2016-3691). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.3.2` or later.
CVE-2017-8098 Cross-Site Request Forgery (CSRF) in e107 (CVE-2017-8098)
vulnerability in e107 (CVE-2017-8098). Data can be tampered with by attackers.
CVE-2017-8099 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-8099)
vulnerability in wordpress (CVE-2017-8099). Data can be tampered with by attackers.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →