VYPR

CWE-352

Cross-Site Request Forgery (CSRF)

CompoundStableLikelihood: Medium

Description

The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-111 · CAPEC-462 · CAPEC-467 · CAPEC-62

CVEs mapped to this weakness (9,622)

page 223 of 482
  • CVE-2021-24536MedAug 16, 2021
    risk 0.40cvss 6.1epss 0.00

    The Custom Login Redirect WordPress plugin through 1.0.0 does not have CSRF check in place when saving its settings, and do not sanitise or escape user input before outputting them back in the page, leading to a Stored Cross-Site Scripting issue

  • CVE-2021-24535MedAug 16, 2021
    risk 0.40cvss 6.1epss 0.00

    The Light Messages WordPress plugin through 1.0 is lacking CSRF check when updating it's settings, and is not sanitising its Message Content in them (even with the unfiltered_html disallowed). As a result, an attacker could make a logged in admin update the settings to arbitrary…

  • CVE-2021-24466MedAug 16, 2021
    risk 0.40cvss 6.1epss 0.00

    The Verse-O-Matic WordPress plugin through 4.1.1 does not have any CSRF checks in place, allowing attackers to make logged in administrators do unwanted actions, such as add/edit/delete arbitrary verses and change the settings. Due to the lack of sanitisation in the settings and…

  • CVE-2021-24411MedAug 16, 2021
    risk 0.40cvss 6.1epss 0.00

    The Social Tape WordPress plugin through 1.0 does not have CSRF checks in place when saving its settings, and do not sanitise or escape them before outputting them back in the page, leading to a stored Cross-Site Scripting issue via a CSRF attack

  • CVE-2021-24410MedAug 16, 2021
    risk 0.40cvss 6.1epss 0.00

    The తెలుగు బైబిల్ వచనములు WordPress plugin through 1.0 is lacking any CSRF check when saving its settings and verses, and do not sanitise or escape them when outputting them back in the page. This could allow attackers to make a logged in…

  • CVE-2021-34661MedAug 9, 2021
    risk 0.40cvss 6.1epss 0.00

    The WP Fusion Lite WordPress plugin is vulnerable to Cross-Site Request Forgery via the `show_logs_section` function found in the ~/includes/admin/logging/class-log-handler.php file which allows attackers to drop all logs for the plugin, in versions up to and including 3.37.18.

  • CVE-2021-24504MedAug 2, 2021
    risk 0.40cvss 6.1epss 0.01

    The WP LMS – Best WordPress LMS Plugin WordPress plugin through 1.1.2 does not properly sanitise or validate its User Field Titles, allowing XSS payload to be used in them. Furthermore, no CSRF and capability checks were in place, allowing such attack to be performed either…

  • CVE-2021-24477MedAug 2, 2021
    risk 0.40cvss 6.1epss 0.00

    The Migrate Users WordPress plugin through 1.0.1 does not sanitise or escape its Delimiter option before outputting in a page, leading to a Stored Cross-Site Scripting issue. Furthermore, the plugin does not have CSRF check in place when saving its options, allowing the issue to…

  • CVE-2021-24434MedJul 12, 2021
    risk 0.40cvss 6.1epss 0.00

    The Glass WordPress plugin through 1.3.2 does not sanitise or escape its "Glass Pages" setting before outputting in a page, leading to a Stored Cross-Site Scripting issue. Furthermore, the plugin did not have CSRF check in place when saving its settings, allowing the issue to be…

  • CVE-2021-24349MedJun 14, 2021
    risk 0.40cvss 6.1epss 0.00

    This Gallery from files WordPress plugin through 1.6.0 gives the functionality of uploading images to the server. But filenames are not properly sanitized before being output in an error message when they have an invalid extension, leading to a reflected Cross-Site Scripting…

  • CVE-2021-24328MedJun 1, 2021
    risk 0.40cvss 6.2epss 0.01

    The WP Login Security and History WordPress plugin through 1.0 did not have CSRF check when saving its settings, not any sanitisation or validation on them. This could allow attackers to make logged in administrators change the plugin's settings to arbitrary values, and set XSS…

  • CVE-2020-23376MedMay 10, 2021
    risk 0.40cvss 6.1epss 0.00

    NoneCMS v1.3 has a CSRF vulnerability in public/index.php/admin/nav/add.html, as demonstrated by adding a navigation column which can be injected with arbitrary web script or HTML via the name parameter to launch a stored XSS attack.

  • CVE-2021-24173MedApr 5, 2021
    risk 0.40cvss 6.1epss 0.00

    The VM Backups WordPress plugin through 1.0 does not have CSRF checks, allowing attackers to make a logged in user unwanted actions, such as update the plugin's options, leading to a Stored Cross-Site Scripting issue.

  • CVE-2020-23631MedJan 11, 2021
    risk 0.40cvss 6.1epss 0.00

    Cross-site request forgery (CSRF) in admin/global/manage.php in WDJA CMS 1.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via the tongji parameter.

  • CVE-2020-12462MedApr 29, 2020
    risk 0.40cvss 6.1epss 0.00

    The ninja-forms plugin before 3.4.24.2 for WordPress allows CSRF with resultant XSS.

  • CVE-2016-10865MedAug 9, 2019
    risk 0.40cvss 6.1epss 0.01

    The Lightbox Plus Colorbox plugin through 2.7.2 for WordPress has cross-site request forgery (CSRF) via wp-admin/admin.php?page=lightboxplus, as demonstrated by resultant width XSS.

  • CVE-2019-14228MedJul 26, 2019
    risk 0.40cvss 6.1epss 0.00

    Xavier PHP Management Panel 3.0 is vulnerable to Reflected POST-based XSS via the username parameter when registering a new user at admin/includes/adminprocess.php. If there is an error when registering the user, the unsanitized username will reflect via the error page. Due to…

  • CVE-2019-12616MedJun 5, 2019
    risk 0.40cvss 6.5epss 0.19

    An issue was discovered in phpMyAdmin before 4.9.0. A vulnerability was found that allows an attacker to trigger a CSRF attack against a phpMyAdmin user. The attacker can trick the user, for instance through a broken tag pointing at the victim's phpMyAdmin database, and…

  • CVE-2019-12361MedMay 27, 2019
    risk 0.40cvss 6.1epss 0.00

    EmpireCMS 7.5.0 has XSS via the from parameter to e/member/doaction.php, as demonstrated by a CSRF payload that changes the dynamic page template. The attacker can choose to resend the e/template/member/regsend.php registered activation mail page.

  • CVE-2019-1857MedMay 3, 2019
    risk 0.40cvss 6.1epss 0.01

    A vulnerability in the web-based management interface of Cisco HyperFlex HX-Series could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected system. The vulnerability is due to insufficient…