NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54505  CVE-2007-2338  Cross-site request forgery (CSRF) vulnerability in include/admin/banlist.php in Phorum before 5.1.22 allows remote attackers to perform unauthorized banlist deletions as an administrator via the delete parameter.    7.5  High  2017-01-07  2011-03-07  View
52021  CVE-2009-4906  Cross-site request forgery (CSRF) vulnerability in index.php in Acc PHP eMail 1.1 allows remote attackers to hijack the authentication of administrators for requests that change passwords.    6.8  Medium  2017-01-07  2010-06-28  View
6636  CVE-2008-6905  Cross-site request forgery (CSRF) vulnerability in index.php in BabbleBoard 1.1.6 allows remote authenticated users to hijack the authentication of administrators for requests that delete (1) categories or (2) groups; (3) ban users; or (4) delete users via the admin page.    Medium  2017-01-03  2009-08-06  View
57192  CVE-2007-5109  Cross-site request forgery (CSRF) vulnerability in index.php in FlatNuke 2.6, and possibly 3, allows remote attackers to change the password and privilege level of arbitrary accounts via the user parameter and modified (1) regpass and (2) level parameters in a none_Login action, as demonstrated by using a Flash object to automatically make the request.    4.3  Medium  2017-01-07  2008-09-05  View
13130  CVE-2010-1610  Cross-site request forgery (CSRF) vulnerability in index.php in OpenCart 1.4 allows remote attackers to hijack the authentication of an application administrator for requests that create an administrative account via a POST request with the route parameter set to "user/user/insert." NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-18  2010-04-30  View

Page 2806 of 17672, showing 5 records out of 88360 total, starting on record 14026, ending on 14030

Actions