NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68229  CVE-2005-2540  CRLF injection vulnerability in FlatNuke 2.5.5 and possibly earlier versions allows remote attackers to execute arbitrary PHP commands via an ASCII char 13 (carriage return) in the signature field, which is injected into a PHP script without a preceding comment character, which can then be executed by a direct request.    Medium  2017-07-18  2017-07-10  View
54895  CVE-2007-2731  CRLF injection vulnerability in formmail.php in Jetbox CMS 2.1 might allow remote attackers to inject arbitrary e-mail headers via LF (%0A) sequences in the subject parameter, a related issue to CVE-2007-1898.    Medium  2017-01-07  2011-03-07  View
49046  CVE-2009-1777  CRLF injection vulnerability in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the redirect parameter.    Medium  2017-01-07  2009-06-04  View
62147  CVE-2006-3473  CRLF injection vulnerability in form_mail Drupal Module before 1.8.2.2 allows remote attackers to inject e-mail headers, which facilitates sending spam messages, a different issue than CVE-2006-1225.    7.5  High  2016-12-20  2011-03-07  View
30470  CVE-2014-1956  CRLF injection vulnerability in FortiGuard FortiWeb before 5.0.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.    Medium  2017-01-19  2014-07-18  View

Page 2707 of 17672, showing 5 records out of 88360 total, starting on record 13531, ending on 13535

Actions