NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 35478 | CVE-2014-8429 | Cross-site request forgery (CSRF) vulnerability in Xavoc Technocrats xEpan CMS 1.0.4.1, 1.0.4, 1.0.1, and earlier allows remote attackers to hijack the authentication of administrators for requests that create new administrative accounts via a crafted request to the owner/users page. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 47003 | CVE-2012-6047 | Cross-site request forgery (CSRF) vulnerability in X7 Chat 2.0.5.1 and earlier allows remote attackers to hijack the authentication of administrators for requests that add a user to an arbitrary group via the users page in an adminpanel action to index.php. | 2 | 6.8 | Medium | 2017-01-19 | 2012-11-27 | View | |
| 26341 | CVE-2015-5075 | Cross-site request forgery (CSRF) vulnerability in X2Engine X2CRM before 5.2 allows remote attackers to hijack the authentication of administrators for requests that create an administrative account via a crafted request to index.php/users/create. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 86365 | CVE-2016-4904 | Cross-site request forgery (CSRF) vulnerability in WP-OliveCart versions prior to 3.1.3 and WP-OliveCartPro versions prior to 3.1.8 allows remote attackers to hijack the authentication of a user to perform unintended operations via unspecified vectors. | 2 | 6.8 | Medium | 2017-06-04 | 2017-05-30 | View | |
| 35854 | CVE-2014-9033 | Cross-site request forgery (CSRF) vulnerability in wp-login.php in WordPress 3.7.4, 3.8.4, 3.9.2, and 4.0 allows remote attackers to hijack the authentication of arbitrary users for requests that reset passwords. | 2 | 6.8 | Medium | 2017-01-19 | 2015-11-02 | View |
Page 14769 of 17672, showing 5 records out of 88360 total, starting on record 73841, ending on 73845