VYPR

CWE-352

Cross-Site Request Forgery (CSRF)

CompoundStableLikelihood: Medium

Description

The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-111 · CAPEC-462 · CAPEC-467 · CAPEC-62

CVEs mapped to this weakness (9,580)

page 13 of 479
  • CVE-2023-1722CriJun 24, 2023
    risk 0.59cvss 9.1epss 0.00

    Yoga Class Registration System version 1.0 allows an administrator to execute commands on the server. This is possible because the application does not correctly validate the thumbnails of the classes uploaded by the administrators.

  • CVE-2023-23465CriFeb 15, 2023
    risk 0.59cvss 9.1epss 0.00

    Media CP Media Control Panel latest version. CSRF possible through unspecified endpoint.

  • CVE-2021-24922CriDec 13, 2021
    risk 0.59cvss 9.0epss 0.01

    The Pixel Cat WordPress plugin before 2.6.2 does not have CSRF check when saving its settings, and did not sanitise as well as escape some of them, which could allow attacker to make a logged in admin change them and perform Cross-Site Scripting attacks

  • CVE-2019-19915CriDec 19, 2019
    risk 0.59cvss 9.0epss 0.01

    The "301 Redirects - Easy Redirect Manager" plugin before 2.45 for WordPress allows users (with subscriber or greater access) to modify, delete, or inject redirect rules, and exploit XSS, with the /admin-ajax.php?action=eps_redirect_save and…

  • CVE-2018-20577CriDec 28, 2018
    risk 0.59cvss 9.1epss 0.01

    Orange Livebox 00.96.320S devices allow cgi-bin/restore.exe, cgi-bin/firewall_SPI.exe, cgi-bin/setup_remote_mgmt.exe, cgi-bin/setup_pass.exe, and cgi-bin/upgradep.exe CSRF. This is related to Firmware 01.11.2017-11:43:44, Boot v0.70.03, Modem 5.4.1.10.1.1A, Hardware 02, and…

  • CVE-2024-24777HigOct 30, 2024
    risk 0.58cvss 8.8epss 0.08

    A cross-site request forgery (CSRF) vulnerability exists in the Web Application functionality of the LevelOne WBR-6012 R0.40e6. A specially crafted HTTP request can lead to unauthorized access. An attacker can stage a malicious web page to trigger this vulnerability.

  • CVE-2024-38457HigJun 16, 2024
    risk 0.58cvss 8.8epss 0.07

    Xenforo before 2.2.16 allows CSRF.

  • CVE-2023-45128CriOct 16, 2023
    risk 0.58cvss 10.0epss 0.00

    Fiber is an express inspired web framework written in Go. A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the application, which allows an attacker to inject arbitrary values and forge malicious requests on behalf of a user. This vulnerability can allow…

  • CVE-2023-39446HigSep 18, 2023
    risk 0.58cvss 8.9epss 0.00

    Thanks to the weaknesses that the web application has at the user management level, an attacker could obtain the information from the headers that is necessary to create specially designed URLs and originate malicious actions when a legitimate user is logged into the web…

  • CVE-2022-45980HigDec 12, 2022
    risk 0.58cvss 8.8epss 0.07

    Tenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via /goform/SysToolRestoreSet .

  • CVE-2022-0952HigMay 2, 2022
    risk 0.58cvss 8.8epss 0.11

    The Sitemap by click5 WordPress plugin before 1.0.36 does not have authorisation and CSRF checks when updating options via a REST endpoint, and does not ensure that the option to be updated belongs to the plugin. As a result, unauthenticated attackers could change arbitrary blog…

  • CVE-2022-28108HigApr 19, 2022
    risk 0.58cvss 8.8epss 0.12

    Selenium Server (Grid) before 4 allows CSRF because it permits non-JSON content types such as application/x-www-form-urlencoded, multipart/form-data, and text/plain.

  • CVE-2022-0439HigMar 7, 2022
    risk 0.58cvss 8.8epss 0.04

    The Email Subscribers & Newsletters WordPress plugin before 5.3.2 does not correctly escape the `order` and `orderby` parameters to the `ajax_fetch_report_list` action, making it vulnerable to blind SQL injection attacks by users with roles as low as Subscriber. Further, it does…

  • CVE-2021-31760HigApr 25, 2021
    risk 0.58cvss 8.8epss 0.08

    Webmin 1.973 is affected by Cross Site Request Forgery (CSRF) to achieve Remote Command Execution (RCE) through Webmin's running process feature.

  • CVE-2020-5786HigOct 1, 2020
    risk 0.58cvss 8.8epss 0.09

    Cross-site request forgery in Teltonika firmware TRB2_R_00.02.04.3 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.

  • CVE-2020-5776HigSep 1, 2020
    risk 0.58cvss 8.8epss 0.15

    Currently, all versions of MAGMI are vulnerable to CSRF due to the lack of CSRF tokens. RCE (via phpcli command) is possible in the event that a CSRF is leveraged against an existing admin session for MAGMI.

  • CVE-2020-8658HigFeb 6, 2020
    risk 0.58cvss 8.8epss 0.10

    The BestWebSoft Htaccess plugin through 1.8.1 for WordPress allows wp-admin/admin.php?page=htaccess.php&action=htaccess_editor CSRF. The flag htccss_nonce_name passes the nonce to WordPress but the plugin does not validate it correctly, resulting in a wrong implementation of…

  • CVE-2020-8417HigJan 28, 2020
    risk 0.58cvss 8.8epss 0.12

    The Code Snippets plugin before 2.14.0 for WordPress allows CSRF because of the lack of a Referer check on the import menu.

  • CVE-2018-6458HigMay 11, 2018
    risk 0.58cvss 8.8epss 0.10

    Easy Hosting Control Panel (EHCP) v0.37.12.b allows remote attackers to conduct cross-site request forgery (CSRF) attacks by leveraging lack of CSRF protection.

  • CVE-2015-5351HigFeb 25, 2016
    risk 0.58cvss 8.8epss 0.10

    The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 establish sessions and send CSRF tokens for arbitrary new requests, which allows remote attackers to bypass a CSRF protection mechanism by using a…