NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68229 | CVE-2005-2540 | CRLF injection vulnerability in FlatNuke 2.5.5 and possibly earlier versions allows remote attackers to execute arbitrary PHP commands via an ASCII char 13 (carriage return) in the signature field, which is injected into a PHP script without a preceding comment character, which can then be executed by a direct request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 54895 | CVE-2007-2731 | CRLF injection vulnerability in formmail.php in Jetbox CMS 2.1 might allow remote attackers to inject arbitrary e-mail headers via LF (%0A) sequences in the subject parameter, a related issue to CVE-2007-1898. | 2 | 4 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 49046 | CVE-2009-1777 | CRLF injection vulnerability in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the redirect parameter. | 2 | 5 | Medium | 2017-01-07 | 2009-06-04 | View | |
| 62147 | CVE-2006-3473 | CRLF injection vulnerability in form_mail Drupal Module before 1.8.2.2 allows remote attackers to inject e-mail headers, which facilitates sending spam messages, a different issue than CVE-2006-1225. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 30470 | CVE-2014-1956 | CRLF injection vulnerability in FortiGuard FortiWeb before 5.0.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2014-07-18 | View |
Page 2707 of 17672, showing 5 records out of 88360 total, starting on record 13531, ending on 13535