Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2019-03-06 CVE-2019-9603 Cross-Site Request Forgery (CSRF) vulnerability in 1234N Minicms 1.10
MiniCMS 1.10 allows mc-admin/post.php?state=publish&delete= CSRF to delete articles, a different vulnerability than CVE-2018-18891.
network
1234n CWE-352
5.8
2019-03-05 CVE-2019-6561 Cross-Site Request Forgery (CSRF) vulnerability in Moxa products
Cross-site request forgery has been identified in Moxa IKS and EDS, which may allow for the execution of unauthorized actions on the device.
network
low complexity
moxa CWE-352
8.8
2019-03-03 CVE-2019-9549 Cross-Site Request Forgery (CSRF) vulnerability in Popojicms 2.0.1
An issue was discovered in PopojiCMS v2.0.1.
network
popojicms CWE-352
6.8
2019-02-26 CVE-2019-9182 Cross-Site Request Forgery (CSRF) vulnerability in Zzzcms Zzzphp 1.6.1
There is a CSRF in ZZZCMS zzzphp V1.6.1 via a /admin015/save.php?act=editfile request.
network
zzzcms CWE-352
6.8
2019-02-23 CVE-2019-9062 Cross-Site Request Forgery (CSRF) vulnerability in PHPscriptsmall Online Food Ordering Script 1.0
PHP Scripts Mall Online Food Ordering Script 1.0 has Cross-Site Request Forgery (CSRF) in my-account.php.
network
low complexity
phpscriptsmall CWE-352
8.0
2019-02-23 CVE-2019-9052 Cross-Site Request Forgery (CSRF) vulnerability in Pluck-Cms Pluck 4.7.9
An issue was discovered in Pluck 4.7.9-dev1.
network
pluck-cms CWE-352
5.8
2019-02-23 CVE-2019-9051 Cross-Site Request Forgery (CSRF) vulnerability in Pluck-Cms Pluck 4.7.9
An issue was discovered in Pluck 4.7.9-dev1.
network
pluck-cms CWE-352
5.8
2019-02-23 CVE-2019-9049 Cross-Site Request Forgery (CSRF) vulnerability in Pluck-Cms Pluck 4.7.9
An issue was discovered in Pluck 4.7.9-dev1.
network
pluck-cms CWE-352
5.8
2019-02-23 CVE-2019-9048 Cross-Site Request Forgery (CSRF) vulnerability in Pluck-Cms Pluck 4.7.9
An issue was discovered in Pluck 4.7.9-dev1.
network
pluck-cms CWE-352
5.8
2019-02-23 CVE-2019-9040 Cross-Site Request Forgery (CSRF) vulnerability in S-Cms 3.0
S-CMS PHP v3.0 has a CSRF vulnerability to add a new admin user via the admin/ajax.php?type=admin&action=add URI, a related issue to CVE-2018-19332.
network
s-cms CWE-352
6.8