NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3145 | CVE-2008-3262 | Cross-site request forgery (CSRF) vulnerability in Claroline before 1.8.10 allows remote attackers to change passwords, related to lack of a requirement for the previous password. | 2 | 5.8 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 35795 | CVE-2014-8925 | Cross-site request forgery (CSRF) vulnerability in ClearQuest Web in IBM Rational ClearQuest 7.1.x before 7.1.2.17, 8.0.0.x before 8.0.0.14, and 8.0.1.x before 8.0.1.7 allows remote attackers to hijack the authentication of arbitrary users for requests that trigger a logout or insert XSS sequences. | 2 | 6.8 | Medium | 2017-01-19 | 2015-03-25 | View | |
| 26023 | CVE-2015-4659 | Cross-site request forgery (CSRF) vulnerability in ClickHeat 1.14 and earlier allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via a config action to index.php. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 4815 | CVE-2008-5028 | Cross-site request forgery (CSRF) vulnerability in cmd.cgi in (1) Nagios 3.0.5 and (2) op5 Monitor before 4.0.1 allows remote attackers to send commands to the Nagios process, and trigger execution of arbitrary programs by this process, via unspecified HTTP requests. | 2 | 6.8 | Medium | 2017-01-03 | 2016-12-07 | View | |
| 41914 | CVE-2013-7107 | Cross-site request forgery (CSRF) vulnerability in cmd.cgi in Icinga 1.8.5, 1.9.4, 1.10.2, and earlier allows remote attackers to hijack the authentication of users for unspecified commands via unspecified vectors, as demonstrated by bypassing authentication requirements for CVE-2013-7106. | 2 | 6.8 | Medium | 2017-01-18 | 2014-03-05 | View |
Page 2774 of 17672, showing 5 records out of 88360 total, starting on record 13866, ending on 13870