NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
43778  CVE-2012-1919  CRLF injection vulnerability in mime.php in @Mail WebMail Client in AtMail Open-Source before 1.05 allows remote attackers to conduct directory traversal attacks and read arbitrary files via a %0A sequence followed by a .. (dot dot) in the file parameter.    6.4  Medium  2017-01-19  2012-08-28  View
57678  CVE-2007-5615  CRLF injection vulnerability in Mortbay Jetty before 6.1.6rc0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.    Medium  2017-01-07  2009-06-10  View
42546  CVE-2012-0451  CRLF injection vulnerability in Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 allows remote web servers to bypass intended Content Security Policy (CSP) restrictions and possibly conduct cross-site scripting (XSS) attacks via crafted HTTP headers.    4.3  Medium  2017-01-19  2012-12-18  View
395  CVE-2008-0417  CRLF injection vulnerability in Mozilla Firefox before 2.0.0.12 allows remote user-assisted web sites to corrupt the user"s password store via newlines that are not properly handled when the user saves a password.    4.3  Medium  2017-01-03  2011-03-07  View
41212  CVE-2013-6009  CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the ajax/defer servlet.    4.3  Medium  2017-01-18  2013-10-04  View

Page 2716 of 17672, showing 5 records out of 88360 total, starting on record 13576, ending on 13580

Actions