NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 38649 | CVE-2013-2707 | Cross-site request forgery (CSRF) vulnerability in the Login With Ajax plugin before 3.1 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that modify this plugin"s settings. | 2 | 6.8 | Medium | 2017-01-18 | 2013-05-10 | View | |
| 33840 | CVE-2014-6312 | Cross-site request forgery (CSRF) vulnerability in the Login Widget With Shortcode (login-sidebar-widget) plugin before 3.2.1 for WordPress allows remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the custom_style_afo parameter on the login_widget_afo page to wp-admin/options-general.php. | 2 | 4.3 | Medium | 2017-01-19 | 2014-10-22 | View | |
| 31971 | CVE-2014-3882 | Cross-site request forgery (CSRF) vulnerability in the Login rebuilder plugin before 1.2.0 for WordPress allows remote attackers to hijack the authentication of arbitrary users. | 2 | 6.8 | Medium | 2017-01-19 | 2014-06-25 | View | |
| 32691 | CVE-2014-4774 | Cross-site request forgery (CSRF) vulnerability in the login page in IBM License Metric Tool 9 before 9.1.0.2 and Endpoint Manager for Software Use Analysis 9 before 9.1.0.2 allows remote attackers to hijack the authentication of arbitrary users via vectors involving a FRAME element. | 2 | 6.8 | Medium | 2017-01-19 | 2015-05-26 | View | |
| 13167 | CVE-2010-1648 | Cross-site request forgery (CSRF) vulnerability in the login interface in MediaWiki 1.15 before 1.15.4 and 1.16 before 1.16 beta 3 allows remote attackers to hijack the authentication of users for requests that (1) create accounts or (2) reset passwords, related to the Special:Userlogin form. | 2 | 6.8 | Medium | 2017-01-18 | 2010-07-30 | View |
Page 14809 of 17672, showing 5 records out of 88360 total, starting on record 74041, ending on 74045