source: https://www.securityfocus.com/bid/62061/info appRain CMF is prone to multiple cross-site request-forgery vulnerabilities. Exploiting these issues may allow a remote attacker to perform certain unauthorized actions in the context of the affected application. Other attacks are also possible. appRain CMF 3.0.2 is vulnerable; other versions may also be affected.