NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
38701  CVE-2013-2778  Cross-site request forgery (CSRF) vulnerability in addressbook/register/delete_user.php in PHP Address Book 8.2.5 allows remote attackers to hijack the authentication of administrators for requests that delete accounts, a different vulnerability than CVE-2013-0135.1.    7.5  High  2017-01-18  2013-04-09  View
7603  CVE-2011-0545  Cross-site request forgery (CSRF) vulnerability in adduser.do in Symantec LiveUpdate Administrator (LUA) before 2.3 allows remote attackers to hijack the authentication of administrators for requests that create new administrative accounts, and possibly have unspecified other impact, via the userRole parameter.    6.8  Medium  2017-01-07  2013-02-06  View
12253  CVE-2010-0707  Cross-site request forgery (CSRF) vulnerability in add_user.php in Employee Timeclock Software 0.99 allows remote attackers to hijack the authentication of an administrator for requests that create new administrative users. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-18  2010-03-02  View
11554  CVE-2011-5302  Cross-site request forgery (CSRF) vulnerability in adm/admin_edit.php in PHPDug 2.0.0 allows remote attackers to hijack the authentication of administrators for requests that modify credentials.    6.8  Medium  2017-01-07  2015-01-02  View
41960  CVE-2013-7209  Cross-site request forgery (CSRF) vulnerability in admBase/login.page in the Admin module in JForum allows remote attackers to hijack the authentication of administrators for requests that change the user group permissions of arbitrary users via a groupsSave action.    6.8  Medium  2017-01-18  2013-12-31  View

Page 2749 of 17672, showing 5 records out of 88360 total, starting on record 13741, ending on 13745

Actions