Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2022-11-23 CVE-2020-23593 Cross-Site Request Forgery (CSRF) vulnerability in Optilinknetwork Op-Xt71000N Firmware 3.3.1191028
A vulnerability in OPTILINK OP-XT71000N Hardware Version: V2.2, Firmware Version: OP_V3.3.1-191028 allows an unauthenticated, remote attacker to conduct a cross site request forgery (CSRF) attack to enable syslog mode through ' /mgm_log_cfg.asp.' The system starts to log events, 'Remote' mode or 'Both' mode on "Syslog -- Configuration page" logs events and sends to remote syslog server IP and Port.
network
low complexity
optilinknetwork CWE-352
6.5
2022-11-21 CVE-2020-23582 Cross-Site Request Forgery (CSRF) vulnerability in Optilinknetwork Op-Xt71000N Firmware 3.3.1191028
A vulnerability in the "/admin/wlmultipleap.asp" of optilink OP-XT71000N version: V2.2 could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack to create Multiple WLAN BSSID.
network
low complexity
optilinknetwork CWE-352
6.5
2022-11-21 CVE-2022-3750 Cross-Site Request Forgery (CSRF) vulnerability in Inkthemes ASK ME 6.8.4
The has a CSRF vulnerability that allows the deletion of a post without using a nonce or prompting for confirmation.
network
low complexity
inkthemes CWE-352
4.7
2022-11-18 CVE-2022-40695 Cross-Site Request Forgery (CSRF) vulnerability in Clogica SEO Redirection
Multiple Cross-Site Scripting (CSRF) vulnerabilities in SEO Redirection Plugin plugin <= 8.9 on WordPress.
network
low complexity
clogica CWE-352
8.8
2022-11-18 CVE-2022-41634 Cross-Site Request Forgery (CSRF) vulnerability in Maxfoundry Media Library Folders
Cross-Site Request Forgery (CSRF) vulnerability in Media Library Folders plugin <= 7.1.1 on WordPress.
network
low complexity
maxfoundry CWE-352
8.8
2022-11-18 CVE-2022-41685 Cross-Site Request Forgery (CSRF) vulnerability in Visztpeter products
Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Viszt Péter's Integration for Szamlazz.hu & WooCommerce plugin <= 5.6.3.2 and Csomagpontok és szállítási címkék WooCommerce-hez plugin <= 1.9.0.2 on WordPress.
network
low complexity
visztpeter CWE-352
8.8
2022-11-18 CVE-2022-44740 Cross-Site Request Forgery (CSRF) vulnerability in Constantcontact Creative Mail
Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Creative Mail plugin <= 1.5.4 on WordPress.
network
low complexity
constantcontact CWE-352
8.8
2022-11-18 CVE-2022-45073 Cross-Site Request Forgery (CSRF) vulnerability in Miniorange Wordpress Rest API Authentication
Cross-Site Request Forgery (CSRF) vulnerability in REST API Authentication plugin <= 2.4.0 on WordPress.
network
low complexity
miniorange CWE-352
8.8
2022-11-18 CVE-2022-38075 Cross-Site Request Forgery (CSRF) vulnerability in Webartesanal Mantenimiento web
Cross-Site Request Forgery (CSRF) vulnerability leading to Stored Cross-Site Scripting (XSS) in Mantenimiento web plugin <= 0.13 on WordPress.
network
low complexity
webartesanal CWE-352
6.1
2022-11-18 CVE-2022-40686 Cross-Site Request Forgery (CSRF) vulnerability in Constantcontact Creative Mail
Cross-Site Request Forgery (CSRF) vulnerability in Creative Mail plugin <= 1.5.4 on WordPress.
network
low complexity
constantcontact CWE-352
8.8