Index
Submit Vulnerability
Rank
Market
Exchange
Newest PoC
Search
Community
Pocsuite
Ceye.io
Paper
KCon
ZoomEye
About
Data Statistics
Vul Market
Develop Document
Guideline
Feedback
Help
Login
Register
Toggle navigation
Login
Index
Reward and Rank
Detail Reward List
PoC Reward List
Exchange
Rank
Submit New Vulnerability
Vulnerability Database
Vulnerability List
Component Categories
Vulnerability Category
Search
Data Statistics
Paper
Vulnerability Category
— CSRF
Chinese name:
跨站请求伪造
CVE ID:
352
Detail:
跨站请求伪造(Cross-site request forgery),也被称为one-click attack或者session riding,通常缩写为CSRF或者XSRF, 是一种挟制用户在当前已登录的Web应用程序上执行非本意的操作的攻击方法。
Related Vulnerabilities
SSV ID
Submit Time
Level
Name
Status
Popularity | Comments
SSV-99606
2022-11-20
F5 BIG-IP and BIG-IQ iControl CSRF漏洞(CVE-2022-41622)
3275 | 0
SSV-98341
2020-08-17
华为WS331a产品管理页面存在CSRF漏洞(CVE-2016-6158)
10771 | 0
SSV-98325
2020-07-31
pfSense Firewall CSRF漏洞(CVE-2019-16667)
11960 | 0
SSV-97938
2019-05-14
Jeesns CSRF Vulnerability
1496 | 0
SSV-97737
2018-12-25
Arcadyan ARV7519RW22-A-L T VR9 1.2 Multiple vulnerabilities
3712 | 0
SSV-97394
2018-06-29
RabbitMQ Web Management < 3.7.6 - Cross-Site Request Forgery (Add Admin)
6595 | 0
SSV-97392
2018-06-29
BEESCMS 4.0 - Cross-Site Request Forgery (Add Admin)(CVE-2018-12739)
4284 | 0
SSV-97391
2018-06-29
AsusWRT RT-AC750GF - Cross-Site Request Forgery (Change Admin Password)
3803 | 0
SSV-97390
2018-06-29
Teradek Slice 7.3.15 CSRF Change Password Exploit
3729 | 0
SSV-97387
2018-06-29
Teradek Cube 7.3.6 CSRF Change Password Exploit
3796 | 0
SSV-97383
2018-06-29
Teradek VidiU Pro 3.0.3 CSRF Change Password Exploit
3626 | 0
SSV-97381
2018-06-29
KYOCERA Net Admin 3.4 CSRF Add Admin Exploit
3796 | 0
SSV-97226
2018-04-16
Moxa EDR-810 Web Server Cross-Site Request Forgery Vulnerability(CVE-2017-12126)
3928 | 0
SSV-97052
2017-12-29
ZKTeco ZKBioSecurity 3.0 CSRF Add Superadmin Exploit
1721 | 0
SSV-97041
2017-12-29
InfraPower PPS-02-S Q213V1 Cross-Site Request Forgery
1499 | 0
SSV-97029
2017-12-29
Telesquare SKT LTE Router SDT-CS3B1 CSRF System Command Execution
1640 | 0
SSV-96974
2017-12-11
SonicDICOM PACS 2.3.2 CSRF Add Admin Exploit
1724 | 0
SSV-96948
2017-12-08
Schneider Electric Pelco Sarix/Spectra Cameras CSRF Enable SSH Root Access
1587 | 0
SSV-96848
2017-11-13
DALIM SOFTWARE ES Core 5.0 build 7184.1 Multiple Stored XSS And CSRF Vulnerabilities
1625 | 0
SSV-96842
2017-11-13
NethServer 7.3.1611 (Upload.json) CSRF Script Insertion Vulnerability
1296 | 0
SSV-96841
2017-11-13
NethServer 7.3.1611 (create.json) CSRF Create User And Enable SSH Access
1337 | 0
SSV-96541
2017-09-20
Moxa AWK-3131A Web Application Cross-Site Request Forgery Vulnerability(CVE-2016-8718)
1411 | 0
SSV-96437
2017-09-12
Openfire 3.6.4 Multiple CSRF Vulnerabilities
1372 | 0
SSV-93196
2017-06-13
ESPCMS csrf漏洞 导致任意管理员添加
2245 | 0
SSV-93191
2017-06-12
蝉知cms 6.2 CSRF漏洞
2435 | 0
SSV-93063
2017-04-28
Jenkins Multiple CSRF vulnerabilities (CVE-2017-1000356)
1605 | 0
SSV-93051
2017-04-25
WordPress Plugin Quiz And Survey Master (Formerly Quiz Master Next) Multiple Vulnerabilities
1297 | 0
SSV-93050
2017-04-25
CSRF vulnerability in Multisite Post Duplicator could allow an attacker to do almost anything an admin user can do (WordPress plugin)
1097 | 0
SSV-93045
2017-04-25
WordPress Plugin Nelio AB Testing Server-Side Request Forgery (SSRF)
1261 | 0
SSV-92835
2017-03-28
pfsense 2.3.2: CSRF
1425 | 0
SSV-92828
2017-03-27
Elefant CMS 1.3.12-RC CSRF
1218 | 0
SSV-92774
2017-03-14
D-Link DIR-816L (Wireless Router) - Cross-Site Request Forgery (CVE-2015-5999)
1972 | 0
SSV-92625
2017-01-18
dedeCMS 利用友情链接提权漏洞
2991 | 0
SSV-92447
2016-09-29
Django CSRF Bypass (CVE-2016-7401)
7903 | 0
SSV-92325
2016-08-23
phpcollab 任意用户创建特权升级--csrf
2890 | 0
SSV-92288
2016-08-15
Nagios(2.2.1) 网络监控多处 CSRF
5337 | 0
SSV-92284
2016-08-12
wordpress-"Add From Server"插件CSRF
6126 | 0
SSV-92075
2016-07-11
WordPress Lazy Content Slider 插件 CSRF漏洞
3805 | 0
SSV-91799
2016-06-10
MikroTik RouterOS 跨站请求伪造漏洞
2961 | 0
SSV-91678
2016-05-26
pfSense Firewall <= 2.2.6 - Services CSRF
5664 | 0
SSV-91668
2016-05-25
Hikvision Digital Video Recorder - Cross-Site Request Forgery
5415 | 0
SSV-91666
2016-05-25
WPN-XM Serverstack 0.8.6 - Cross Site Request Forgery
3717 | 0
SSV-91642
2016-05-23
MOBOTIX Video Security Cameras - CSRF Add Admin Exploit
4195 | 0
SSV-91596
2016-05-19
Phpwind GET型CSRF任意代码执行 漏洞
4796 | 0
SSV-91427
2016-05-04
Trend Micro Deep Discovery Inspector 3.8, 3.7 - CSRF Vulnerabilities
2472 | 0
SSV-91393
2016-04-26
Hikvision Digital Video Recorder CSRF 漏洞
5753 | 0
SSV-91320
2016-04-15
Dating Pro Genie 2015.7 - CSRF Vulnerabilities
1504 | 0
SSV-91319
2016-04-15
iTop 2.2.1 - CSRF Vulnerability
1590 | 0
SSV-91312
2016-04-14
Xoops 2.5.7.2 - Arbitrary User Deletions CSRF
1567 | 0
SSV-91291
2016-04-12
Tipask 2.5 setting.php 存在CSRF漏洞 (结合xss可getshell)
1680 | 0
SSV-91290
2016-04-12
emlog 5.3.1 store.php CSRF漏洞
1910 | 0
SSV-91277
2016-04-11
Cmseasy多处CSRF
1847 | 0
SSV-91245
2016-04-05
TaoCMS v2.5Beta5 存在CSRF漏洞可getshell
1746 | 0
SSV-91008
2016-03-13
phpMyBackupPro 2.5 - 远程代码执行/CSRF
1456 | 0
SSV-90997
2016-03-11
Schneider Electric Conext ComBox Ver02.01BN0673 POST类 CSRF
1860 | 0
SSV-90849
2016-03-02
XZERES 442SR Wind Turbine CSRF漏洞
1593 | 0
SSV-90834
2016-02-29
pfSense <= 2.2.5 - Config File CSRF漏洞
1849 | 0
SSV-90815
2016-02-26
Ubiquiti Networks UniFi 3.2.10 - CSRF Vulnerability
1426 | 0
SSV-90739
2016-02-15
zcms 2.x 后台投稿处 存储型XSS和CSRF漏洞
3381 | 0
SSV-90694
2016-01-29
destoon v6版 admin.php csrf 漏洞
2036 | 0
SSV-90567
2016-01-22
PHPCMS后台CSRF
2040 | 0
SSV-90160
2015-12-22
Belkin N150 Wireless Home Router跨站请求伪造漏洞
1684 | 0
SSV-90026
2015-12-09
Elasticsearch Kibana跨站请求伪造漏洞
1511 | 0
SSV-89956
2015-11-27
Cisco TelePresence Video Communication Server跨站请求伪造漏洞
1307 | 0
SSV-89954
2015-11-27
多款Arris设备跨站请求伪造漏洞
1330 | 0
SSV-89897
2015-11-25
Cisco Firepower 9000 Series Switches点击劫持漏洞
1072 | 0
SSV-89895
2015-11-25
HP Operations Orchestration跨站请求伪造漏洞
1130 | 0
SSV-89879
2015-11-25
TestLink跨站请求伪造漏洞
1058 | 0
SSV-89868
2015-11-20
Horde Groupware 5.2.10 - CSRF 漏洞
1905 | 0
SSV-89864
2015-11-20
Horde Groupware跨站请求伪造漏洞
1709 | 0
SSV-89812
2015-11-18
Oxwall跨站请求伪造漏洞
1748 | 0
SSV-89811
2015-11-18
Red Hat Enterprise Application Platform跨站请求伪造漏洞
1062 | 0
SSV-89810
2015-11-18
Infinite Automation Mango Automation跨站请求伪造漏洞
1011 | 0
SSV-89754
2015-11-16
IBM Security QRadar Incident Forensics跨站请求伪造漏洞
1165 | 0
SSV-89746
2015-11-16
TYPO3 Typo3 Quixplorer扩展跨站请求伪造漏洞
1254 | 0
SSV-89670
2015-10-12
X2Engine 4.2 任意文件上传/ CSRF漏洞
1844 | 0
SSV-89518
2015-09-24
ZeusCart 4.0 - CSRF 漏洞
1607 | 0
SSV-89498
2015-09-21
Nibbleblog 4.0.3 admin.php CSRF
1526 | 0
SSV-89492
2015-09-21
Siemens SIMATIC S7-1200固件版本低于4.1.3的设备跨站伪造请求(CSRF)漏洞
1973 | 0
SSV-89456
2015-09-17
GeniXCMS 0.0.1 /index.php CSRF漏洞
1532 | 0
SSV-89426
2015-09-14
Yahoo Bug Bounty #32 - Cross Site Request Forgery bulkImport Web Vulnerability
1543 | 0
SSV-89342
2015-09-07
D-Link DIR-600 跨站请求伪造漏洞
1554 | 0
SSV-89341
2015-09-06
Watu PRO 4.8.8.4 - CSRF
1669 | 0
SSV-89267
2015-08-31
Pligg CMS 2.0.2 CSRF漏洞
2058 | 0
SSV-87405
2014-11-13
Who's Who Script - CSRF Exploit (Add Admin Account)
1852 | 0
SSV-87355
2014-11-13
Tenda A32 Router - CSRF Vulnerability
1686 | 0
SSV-87385
2014-11-13
Change CMS 3.6.8 - Multiple CSRF Vulnerabilities
1485 | 0
SSV-87299
2014-10-10
RBS Change Complet Open Source 3.6.8 - CSRF Vulnerability
1453 | 0
SSV-87291
2014-10-10
OpenFiler 2.99.1 - CSRF Vulnerability
1451 | 0
SSV-87283
2014-09-29
M/Monit 3.3.2 - CSRF Vulnerability
2160 | 0
SSV-87241
2014-09-18
Wordpress Bulk Delete Users by Email Plugin 1.0 - CSRF
1496 | 0
SSV-87248
2014-09-18
IP Board 3.x - CSRF Token hjiacking
1556 | 0
SSV-87259
2014-09-18
CacheGuard-OS 5.7.7 - CSRF Vulnerability
1391 | 0
SSV-87205
2014-08-26
Innovaphone PBX Admin-GUI - CSRF Vulnerability
1380 | 0
SSV-87169
2014-08-04
SkaDate Lite 2.0 - Multiple CSRF And Persistent XSS Vulnerabilities
1294 | 0
SSV-87170
2014-08-04
Dlink DWR-113 Rev. Ax - CSRF Denial of Service
1835 | 0
SSV-87165
2014-07-29
Ubiquiti UbiFi / mFi / AirVision - CSRF Vulnerability
1582 | 0
SSV-87164
2014-07-29
Oxwall 1.7.0 - Multiple CSRF And HTML Injection Vulnerabilities
1519 | 0
SSV-82209
2014-07-01
Asus RT-N66U 3.0.0.4.374_720 - CSRF Vulnerability
1411 | 0
SSV-62204
2014-04-17
XCloner Standalone跨站请求伪造漏洞
922 | 0
1
2
3
×
Hello,
please call the customer service hotline to recharge, thank you for your continued support Seebug!
010-57076191