Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2023-10-03 CVE-2023-32791 Cross-Site Request Forgery (CSRF) vulnerability in Nxlog Manager 5.6.5633
Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version.
network
low complexity
nxlog CWE-352
6.5
2023-10-03 CVE-2023-32792 Cross-Site Request Forgery (CSRF) vulnerability in Nxlog Manager 5.6.5633
Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version.
network
low complexity
nxlog CWE-352
6.5
2023-10-03 CVE-2023-24518 Cross-Site Request Forgery (CSRF) vulnerability in Pandorafms Pandora FMS
A Cross-site Request Forgery (CSRF) vulnerability in Pandora FMS allows an attacker to force authenticated users to send a request to a web application they are currently authenticated against.
network
low complexity
pandorafms CWE-352
7.1
2023-10-03 CVE-2023-38398 Cross-Site Request Forgery (CSRF) vulnerability in Tablooa
Cross-Site Request Forgery (CSRF) vulnerability in Taboola plugin <= 2.0.1 versions.
network
low complexity
tablooa CWE-352
8.8
2023-10-03 CVE-2023-37998 Cross-Site Request Forgery (CSRF) vulnerability in Saas Disabler 3.0.3
Cross-Site Request Forgery (CSRF) vulnerability in Saas Disabler allows Cross Site Request Forgery.This issue affects Disabler: from n/a through 3.0.3.
network
low complexity
saas CWE-352
8.8
2023-10-03 CVE-2023-41086 Cross-Site Request Forgery (CSRF) vulnerability in Furunosystems products
Cross-site request forgery (CSRF) vulnerability exists in FURUNO SYSTEMS wireless LAN access point devices.
network
low complexity
furunosystems CWE-352
8.8
2023-10-02 CVE-2023-4659 Cross-Site Request Forgery (CSRF) vulnerability in Free5Gc 1.1.1
Cross-Site Request Forgery vulnerability, whose exploitation could allow an attacker to perform different actions on the platform as an administrator, simply by changing the token value to "admin".
network
low complexity
free5gc CWE-352
critical
9.8
2023-09-27 CVE-2023-41452 Cross-Site Request Forgery (CSRF) vulnerability in PHPkobo Ajaxnewsticker 1.0.5
Cross Site Request Forgery vulnerability in phpkobo AjaxNewTicker v.1.0.5 allows a remote attacker to execute arbitrary code via a crafted payload to the txt parameter in the index.php component.
network
low complexity
phpkobo CWE-352
8.8
2023-09-27 CVE-2023-40048 Cross-Site Request Forgery (CSRF) vulnerability in Progress WS FTP Server
In WS_FTP Server version prior to 8.8.2, the WS_FTP Server Manager interface was missing cross-site request forgery (CSRF) protection on a POST transaction corresponding to a WS_FTP Server administrative function.
network
low complexity
progress CWE-352
6.5
2023-09-27 CVE-2023-44160 Cross-Site Request Forgery (CSRF) vulnerability in Acronis Cyber Protect 15
Sensitive information manipulation due to cross-site request forgery.
network
low complexity
acronis CWE-352
6.5