NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 62153 | CVE-2006-3479 | Cross-site request forgery (CSRF) vulnerability in the del_block function in modules/Admin/block.php in Nuked-Klan 1.7.5 and earlier and 1.7 SP4.2 allows remote attackers to delete arbitrary "blocks" via a link with a modified bid parameter in a del_block op on the block page in index.php. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 56933 | CVE-2007-4822 | Cross-site request forgery (CSRF) vulnerability in the device management interface in Buffalo AirStation WHR-G54S 1.20 allows remote attackers to make configuration changes as an administrator via HTTP requests to certain HTML pages in the res parameter with an inp req parameter to cgi-bin/cgi, as demonstrated by accessing (1) ap.html and (2) filter_ip.html. | 2 | 4.3 | Medium | 2017-01-07 | 2011-04-25 | View | |
| 45861 | CVE-2012-4478 | Cross-site request forgery (CSRF) vulnerability in the Drag & Drop Gallery module 6.x for Drupal allows remote attackers to hijack the authentication of administrators. | 2 | 6.8 | Medium | 2017-01-19 | 2012-12-03 | View | |
| 38646 | CVE-2013-2704 | Cross-site request forgery (CSRF) vulnerability in the Dropdown Menu Widget plugin 1.9.1 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) sequences. | 2 | 6.8 | Medium | 2017-01-18 | 2013-10-07 | View | |
| 38644 | CVE-2013-2702 | Cross-site request forgery (CSRF) vulnerability in the Easy AdSense Lite plugin before 6.10 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that modify this plugin"s settings. | 2 | 6.8 | Medium | 2017-01-18 | 2013-05-06 | View |
Page 2857 of 17672, showing 5 records out of 88360 total, starting on record 14281, ending on 14285