Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2018-09-21 CVE-2018-15612 Cross-Site Request Forgery (CSRF) vulnerability in Avaya Orchestration Designer 7.1
A CSRF vulnerability in the Runtime Config component of Avaya Aura Orchestration Designer could allow an attacker to add, change, or remove administrative settings.
network
low complexity
avaya CWE-352
8.8
2018-09-20 CVE-2018-6504 Cross-Site Request Forgery (CSRF) vulnerability in Microfocus Arcsight Management Center
A potential Cross-Site Request Forgery (CSRF) vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81.
network
low complexity
microfocus CWE-352
8.8
2018-09-18 CVE-2018-13398 Cross-Site Request Forgery (CSRF) vulnerability in Atlassian Fisheye
The administrative smart-commits resource in Atlassian Fisheye and Crucible before version 4.5.4 allows remote attackers to modify smart-commit settings via a Cross-site request forgery (CSRF) vulnerability.
network
low complexity
atlassian CWE-352
6.5
2018-09-18 CVE-2018-16952 Cross-Site Request Forgery (CSRF) vulnerability in Oracle Webcenter Interaction 10.3.3
The Oracle WebCenter Interaction Portal 10.3.3 does not implement protection against Cross-site Request Forgery in its design.
network
low complexity
oracle CWE-352
8.8
2018-09-16 CVE-2018-17104 Cross-Site Request Forgery (CSRF) vulnerability in Microweber 1.0.7
An issue was discovered in Microweber 1.0.7.
network
low complexity
microweber CWE-352
8.8
2018-09-16 CVE-2018-17103 Cross-Site Request Forgery (CSRF) vulnerability in Get-Simple Getsimple CMS 3.3.13
An issue was discovered in GetSimple CMS v3.3.13.
network
low complexity
get-simple CWE-352
8.8
2018-09-16 CVE-2018-17102 Cross-Site Request Forgery (CSRF) vulnerability in Quickappscms Quickapps CMS
An issue was discovered in QuickAppsCMS (aka QACMS) through 2.0.0-beta2.
network
low complexity
quickappscms CWE-352
8.8
2018-09-15 CVE-2018-17070 Cross-Site Request Forgery (CSRF) vulnerability in Unlcms 7.59
An issue was discovered in UNL-CMS 7.59.
network
low complexity
unlcms CWE-352
6.5
2018-09-15 CVE-2018-17069 Cross-Site Request Forgery (CSRF) vulnerability in Unlcms 7.59
An issue was discovered in UNL-CMS 7.59.
network
low complexity
unlcms CWE-352
6.5
2018-09-14 CVE-2018-17045 Cross-Site Request Forgery (CSRF) vulnerability in CMS Maelostore Project CMS Maelostore 1.5.0
An issue was discovered in CMS MaeloStore V.1.5.0.
network
low complexity
cms-maelostore-project CWE-352
8.8