NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62153  CVE-2006-3479  Cross-site request forgery (CSRF) vulnerability in the del_block function in modules/Admin/block.php in Nuked-Klan 1.7.5 and earlier and 1.7 SP4.2 allows remote attackers to delete arbitrary "blocks" via a link with a modified bid parameter in a del_block op on the block page in index.php.    Medium  2016-12-20  2011-03-07  View
56933  CVE-2007-4822  Cross-site request forgery (CSRF) vulnerability in the device management interface in Buffalo AirStation WHR-G54S 1.20 allows remote attackers to make configuration changes as an administrator via HTTP requests to certain HTML pages in the res parameter with an inp req parameter to cgi-bin/cgi, as demonstrated by accessing (1) ap.html and (2) filter_ip.html.    4.3  Medium  2017-01-07  2011-04-25  View
45861  CVE-2012-4478  Cross-site request forgery (CSRF) vulnerability in the Drag & Drop Gallery module 6.x for Drupal allows remote attackers to hijack the authentication of administrators.    6.8  Medium  2017-01-19  2012-12-03  View
38646  CVE-2013-2704  Cross-site request forgery (CSRF) vulnerability in the Dropdown Menu Widget plugin 1.9.1 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) sequences.    6.8  Medium  2017-01-18  2013-10-07  View
38644  CVE-2013-2702  Cross-site request forgery (CSRF) vulnerability in the Easy AdSense Lite plugin before 6.10 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that modify this plugin"s settings.    6.8  Medium  2017-01-18  2013-05-06  View

Page 2857 of 17672, showing 5 records out of 88360 total, starting on record 14281, ending on 14285

Actions