NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11730  CVE-2010-0155  CRLF injection vulnerability in load.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the javaVersion parameter.    3.5  Low  2017-01-18  2010-09-14  View
71886  CVE-2004-1507  CRLF injection vulnerability in login.php in WebCalendar allows remote attackers to inject CRLF sequences via the return_path parameter and perform HTTP Response Splitting attacks to modify expected HTML content from the server.    Medium  2017-07-18  2017-07-10  View
80358  CVE-2002-1405  CRLF injection vulnerability in Lynx 2.8.4 and earlier allows remote attackers to inject false HTTP headers into an HTTP request that is provided on the command line, via a URL containing encoded carriage return, line feed, and other whitespace characters.    Medium  2017-01-05  2016-10-17  View
59362  CVE-2006-0631  CRLF injection vulnerability in mailback.pl in Erik C. Thauvin mailback allows remote attackers to use mailback as a "spam proxy" by modifying mail headers, including recipient e-mail addresses, via newline characters in the Subject field.    Medium  2016-12-20  2011-03-07  View
2405  CVE-2008-2497  CRLF injection vulnerability in Mambo before 4.6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.    Medium  2017-01-03  2011-03-07  View

Page 2714 of 17672, showing 5 records out of 88360 total, starting on record 13566, ending on 13570

Actions