Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2019-11-04 CVE-2019-13497 Cross-Site Request Forgery (CSRF) vulnerability in Oneidentity Cloud Access Manager
One Identity Cloud Access Manager before 8.1.4 Hotfix 1 allows CSRF for logout requests.
network
low complexity
oneidentity CWE-352
6.5
2019-10-30 CVE-2019-18206 Cross-Site Request Forgery (CSRF) vulnerability in Zucchetti Infobusiness 4.4.1
A cross-site request forgery (CSRF) vulnerability in Zucchetti InfoBusiness before and including 4.4.1 allows arbitrary file upload.
network
low complexity
zucchetti CWE-352
8.8
2019-10-29 CVE-2019-9926 Cross-Site Request Forgery (CSRF) vulnerability in Labkey Server 19.1.0
An issue was discovered in LabKey Server 19.1.0.
network
low complexity
labkey CWE-352
8.8
2019-10-28 CVE-2010-4241 Cross-Site Request Forgery (CSRF) vulnerability in Tiki Tikiwiki Cms/Groupware 5.2
Tiki Wiki CMS Groupware 5.2 has CSRF
network
low complexity
tiki CWE-352
8.8
2019-10-25 CVE-2013-4848 Cross-Site Request Forgery (CSRF) vulnerability in Tp-Link Tl-Wdr4300 Firmware 3.13.31
TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities.
network
low complexity
tp-link CWE-352
8.8
2019-10-25 CVE-2019-8234 Cross-Site Request Forgery (CSRF) vulnerability in Adobe Experience Manager 6.2/6.3/6.4
Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a cross-site request forgery vulnerability.
network
low complexity
adobe CWE-352
6.5
2019-10-24 CVE-2019-18414 Cross-Site Request Forgery (CSRF) vulnerability in Sourcecodester Restaurant Management System 1.0
Sourcecodester Restaurant Management System 1.0 is affected by an admin/staff-exec.php Cross Site Request Forgery vulnerability due to a lack of CSRF protection.
network
low complexity
sourcecodester CWE-352
8.8
2019-10-23 CVE-2019-9597 Cross-Site Request Forgery (CSRF) vulnerability in Darktrace Enterprise Immune System 3.0.10/3.0.9
Darktrace Enterprise Immune System before 3.1 allows CSRF via the /config endpoint.
network
low complexity
darktrace CWE-352
6.5
2019-10-23 CVE-2019-9596 Cross-Site Request Forgery (CSRF) vulnerability in Darktrace Enterprise Immune System 3.0.10/3.0.9
Darktrace Enterprise Immune System before 3.1 allows CSRF via the /whitelisteddomains endpoint.
network
low complexity
darktrace CWE-352
6.5
2019-10-23 CVE-2019-18280 Cross-Site Request Forgery (CSRF) vulnerability in Online Grading System Project Online Grading System 1.0
Sourcecodester Online Grading System 1.0 is affected by a Cross Site Request Forgery vulnerability due to a lack of CSRF protection.
network
low complexity
online-grading-system-project CWE-352
8.8