NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
42548  CVE-2012-0453  Cross-site request forgery (CSRF) vulnerability in xmlrpc.cgi in Bugzilla 4.0.2 through 4.0.4 and 4.1.1 through 4.2rc2, when mod_perl is used, allows remote attackers to hijack the authentication of arbitrary users for requests that modify the product"s installation via the XML-RPC API.    5.1  Medium  2017-01-19  2012-02-29  View
23380  CVE-2015-0985  Cross-site request forgery (CSRF) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to hijack the authentication of admins for requests that modify the default user"s password via a GET request.    6.8  Medium  2017-01-19  2015-03-31  View
25529  CVE-2015-3950  Cross-site request forgery (CSRF) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to hijack the authentication of admins for requests that select a different default admin user via a GET request.    6.8  Medium  2017-01-19  2016-12-05  View
72780  CVE-2004-2403  Cross-site request forgery (CSRF) vulnerability in YaBB 1 GOLD SP 1.3.2 allows remote attackers to perform unauthorized actions as the administrative user via a link or IMG tag to YaBB.pl that specifies the desired action, id, and moda parameters.    10  High  2017-07-18  2017-07-10  View
86756  CVE-2015-1786  Cross-site request forgery (CSRF) vulnerability in Zend/Validator/Csrf in Zend Framework 2.3.x before 2.3.6 via null or malformed token identifiers.    6.8  Medium  2017-06-18  2017-06-15  View

Page 2905 of 17672, showing 5 records out of 88360 total, starting on record 14521, ending on 14525

Actions