Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2019-07-18 CVE-2019-1010112 Cross-Site Request Forgery (CSRF) vulnerability in PHPcoo Oecms 4.3/4.3.R60321
OECMS v4.3.R60321 and v4.3 later is affected by: Cross Site Request Forgery (CSRF).
network
low complexity
phpcoo CWE-352
8.8
2019-07-18 CVE-2019-9231 Cross-Site Request Forgery (CSRF) vulnerability in Audiocodes products
An issue was discovered on AudioCodes Mediant 500L-MSBR, 500-MBSR, M800B-MSBR and 800C-MSBR devices with firmware versions before 7.20A.202.307.
network
low complexity
audiocodes CWE-352
8.8
2019-07-18 CVE-2019-13949 Cross-Site Request Forgery (CSRF) vulnerability in Syguestbook A5 Project Syguestbook A5 1.2
SyGuestBook A5 Version 1.2 has no CSRF protection mechanism, as demonstrated by CSRF for an index.php?c=Administrator&a=update admin password change.
network
low complexity
syguestbook-a5-project CWE-352
8.8
2019-07-18 CVE-2019-1010096 Cross-Site Request Forgery (CSRF) vulnerability in Domainmod 4.10.0
DomainMOD v4.10.0 is affected by: Cross Site Request Forgery (CSRF).
network
low complexity
domainmod CWE-352
8.8
2019-07-18 CVE-2019-1010095 Cross-Site Request Forgery (CSRF) vulnerability in Domainmod 4.10.0
DomainMOD v4.10.0 is affected by: Cross Site Request Forgery (CSRF).
network
low complexity
domainmod CWE-352
8.8
2019-07-18 CVE-2019-1010094 Cross-Site Request Forgery (CSRF) vulnerability in Domainmod 4.10.0
domainmod v4.10.0 is affected by: Cross Site Request Forgery (CSRF).
network
low complexity
domainmod CWE-352
8.8
2019-07-18 CVE-2019-1010054 Cross-Site Request Forgery (CSRF) vulnerability in Dolibarr Erp/Crm 7.0.0
Dolibarr 7.0.0 is affected by: Cross Site Request Forgery (CSRF).
network
low complexity
dolibarr CWE-352
8.8
2019-07-17 CVE-2019-10353 Cross-Site Request Forgery (CSRF) vulnerability in Jenkins
CSRF tokens in Jenkins 2.185 and earlier, LTS 2.176.1 and earlier did not expire, thereby allowing attackers able to obtain them to bypass CSRF protection.
network
high complexity
jenkins CWE-352
7.5
2019-07-16 CVE-2019-13611 Cross-Site Request Forgery (CSRF) vulnerability in Python-Engineio Project Python-Engineio
An issue was discovered in python-engineio through 3.8.2.
network
low complexity
python-engineio-project CWE-352
8.8
2019-07-14 CVE-2019-13594 Cross-Site Request Forgery (CSRF) vulnerability in Mirumee Saleor 2.7.0
In Mirumee Saleor 2.7.0 (fixed in 2.8.0), CSRF protection middleware was accidentally disabled, which allowed attackers to send a POST request without a valid CSRF token and be accepted by the server.
network
low complexity
mirumee CWE-352
8.8