Show filters
568 Total Results
Displaying 221-230 of 568
Sort by:
Attacker Value
Unknown
CVE-2019-17431
Disclosure Date: October 10, 2019 (last updated November 27, 2024)
An issue was discovered in fastadmin 1.0.0.20190705_beta. There is a public/index.php/admin/auth/admin/add CSRF vulnerability.
0
Attacker Value
Unknown
CVE-2015-9390
Disclosure Date: September 20, 2019 (last updated November 27, 2024)
The admin-management-xtended plugin before 2.4.0.1 for WordPress has privilege escalation because wp_ajax functions are mishandled.
0
Attacker Value
Unknown
CVE-2019-12922
Disclosure Date: September 13, 2019 (last updated November 08, 2023)
A CSRF issue in phpMyAdmin 4.9.0.1 allows deletion of any server in the Setup page.
0
Attacker Value
Unknown
CVE-2019-15128
Disclosure Date: September 06, 2019 (last updated November 27, 2024)
iF.SVNAdmin through 1.6.2 allows svnadmin/usercreate.php CSRF to create a user.
0
Attacker Value
Unknown
CVE-2018-20971
Disclosure Date: August 16, 2019 (last updated November 27, 2024)
The church-admin plugin before 1.2550 for WordPress has CSRF affecting the upload of a bible reading plan.
0
Attacker Value
Unknown
CVE-2019-11768
Disclosure Date: June 05, 2019 (last updated November 08, 2023)
An issue was discovered in phpMyAdmin before 4.9.0.1. A vulnerability was reported where a specially crafted database name can be used to trigger an SQL injection attack through the designer feature.
0
Attacker Value
Unknown
CVE-2019-12616
Disclosure Date: June 05, 2019 (last updated November 08, 2023)
An issue was discovered in phpMyAdmin before 4.9.0. A vulnerability was found that allows an attacker to trigger a CSRF attack against a phpMyAdmin user. The attacker can trick the user, for instance through a broken <img> tag pointing at the victim's phpMyAdmin database, and the attacker can potentially deliver a payload (such as a specific INSERT or DELETE statement) to the victim.
0
Attacker Value
Unknown
CVE-2019-11077
Disclosure Date: April 11, 2019 (last updated November 27, 2024)
FastAdmin V1.0.0.20190111_beta has a CSRF vulnerability to add a new admin user via the admin/auth/admin/add?dialog=1 URI.
0
Attacker Value
Unknown
CVE-2019-11018
Disclosure Date: April 08, 2019 (last updated December 08, 2023)
application\admin\controller\User.php in ThinkAdmin V4.0 does not prevent continued use of an administrator's cookie-based credentials after a password change.
0
Attacker Value
Unknown
CVE-2019-9625
Disclosure Date: March 07, 2019 (last updated November 27, 2024)
JBMC DirectAdmin 1.55 allows CSRF via the /CMD_ACCOUNT_ADMIN URI to create a new admin account.
0