NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
13167  CVE-2010-1648  Cross-site request forgery (CSRF) vulnerability in the login interface in MediaWiki 1.15 before 1.15.4 and 1.16 before 1.16 beta 3 allows remote attackers to hijack the authentication of users for requests that (1) create accounts or (2) reset passwords, related to the Special:Userlogin form.    6.8  Medium  2017-01-18  2010-07-30  View
32691  CVE-2014-4774  Cross-site request forgery (CSRF) vulnerability in the login page in IBM License Metric Tool 9 before 9.1.0.2 and Endpoint Manager for Software Use Analysis 9 before 9.1.0.2 allows remote attackers to hijack the authentication of arbitrary users via vectors involving a FRAME element.    6.8  Medium  2017-01-19  2015-05-26  View
31971  CVE-2014-3882  Cross-site request forgery (CSRF) vulnerability in the Login rebuilder plugin before 1.2.0 for WordPress allows remote attackers to hijack the authentication of arbitrary users.    6.8  Medium  2017-01-19  2014-06-25  View
33840  CVE-2014-6312  Cross-site request forgery (CSRF) vulnerability in the Login Widget With Shortcode (login-sidebar-widget) plugin before 3.2.1 for WordPress allows remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the custom_style_afo parameter on the login_widget_afo page to wp-admin/options-general.php.    4.3  Medium  2017-01-19  2014-10-22  View
38649  CVE-2013-2707  Cross-site request forgery (CSRF) vulnerability in the Login With Ajax plugin before 3.1 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that modify this plugin"s settings.    6.8  Medium  2017-01-18  2013-05-10  View

Page 2864 of 17672, showing 5 records out of 88360 total, starting on record 14316, ending on 14320

Actions