cpe:/a:razorcms:razorcms:0.2 cpe:/a:razorcms:razorcms:0.3 cpe:/a:razorcms:razorcms:0.3:rc2 CVE-2009-1459 2009-04-28T12:30:03.657-04:00 2017-08-16T21:30:21.677-04:00 6.8 NETWORK MEDIUM NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2009-04-28T14:27:00.000-04:00 FULLDISC 20090416 [follow-up] razorCMS - Multiple Vulnerabilities FULLDISC 20090416 razorCMS - Multiple Vulnerabilities BID 34566 SECUNIA 34744 OSVDB 53778 CONFIRM http://razorcms.co.uk/support/viewtopic.php?f=13&t=325 XF razorcms-unspecified-csrf(49947) Cross-site request forgery (CSRF) vulnerability in razorCMS before 0.4 allows remote attackers to hijack the authentication of administrators for requests that create a web page containing PHP code.