Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2017-12-28 CVE-2017-17960 Cross-Site Request Forgery (CSRF) vulnerability in PHP Multivendor Ecommerce Project PHP Multivendor Ecommerce
PHP Scripts Mall PHP Multivendor Ecommerce has CSRF via admin/sellerupd.php.
8.8
2017-12-28 CVE-2017-17939 Cross-Site Request Forgery (CSRF) vulnerability in Single Theater Booking Script Project Single Theater Booking Script 3.2.2
PHP Scripts Mall Single Theater Booking has CSRF via admin/sitesettings.php.
8.8
2017-12-28 CVE-2017-17936 Cross-Site Request Forgery (CSRF) vulnerability in Vanguard Project Marketplace Digital products PHP
Vanguard Marketplace Digital Products PHP has CSRF via /search.
network
low complexity
vanguard-project CWE-352
8.8
2017-12-27 CVE-2017-17930 Cross-Site Request Forgery (CSRF) vulnerability in Ordermanagementscript Professional Service Script
PHP Scripts Mall Professional Service Script has CSRF via admin/general_settingupd.php, as demonstrated by modifying a setting in the user panel.
network
low complexity
ordermanagementscript CWE-352
8.8
2017-12-27 CVE-2017-17908 Cross-Site Request Forgery (CSRF) vulnerability in Responsive Realestate Script Project Responsive Realestate Script 3.3.3
PHP Scripts Mall Responsive Realestate Script has CSRF via admin/general.
8.8
2017-12-27 CVE-2017-17905 Cross-Site Request Forgery (CSRF) vulnerability in CAR Rental Script Project CAR Rental Script 2.0.8
PHP Scripts Mall Car Rental Script has CSRF via admin/sitesettings.php.
network
low complexity
car-rental-script-project CWE-352
8.8
2017-12-27 CVE-2017-17903 Cross-Site Request Forgery (CSRF) vulnerability in Fortunescripts Lynda Clone 1.0
FS Lynda Clone has CSRF via user/edit_profile, as demonstrated by adding content to the user panel.
network
low complexity
fortunescripts CWE-352
8.8
2017-12-27 CVE-2017-17894 Cross-Site Request Forgery (CSRF) vulnerability in Basic JOB Site Script Project Basic JOB Site Script
Readymade Job Site Script has CSRF via the /job URI.
network
low complexity
basic-job-site-script-project CWE-352
8.8
2017-12-27 CVE-2017-17891 Cross-Site Request Forgery (CSRF) vulnerability in Readymade Video Sharing Script Project Readymade Video Sharing Script 3.2
Readymade Video Sharing Script has CSRF via user-profile-edit.php.
8.8
2017-12-21 CVE-2017-17830 Cross-Site Request Forgery (CSRF) vulnerability in Doditsolutions BUS Booking Script
Bus Booking Script has CSRF via admin/new_master.php.
network
low complexity
doditsolutions CWE-352
6.8