NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 43778 | CVE-2012-1919 | CRLF injection vulnerability in mime.php in @Mail WebMail Client in AtMail Open-Source before 1.05 allows remote attackers to conduct directory traversal attacks and read arbitrary files via a %0A sequence followed by a .. (dot dot) in the file parameter. | 2 | 6.4 | Medium | 2017-01-19 | 2012-08-28 | View | |
| 57678 | CVE-2007-5615 | CRLF injection vulnerability in Mortbay Jetty before 6.1.6rc0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2009-06-10 | View | |
| 42546 | CVE-2012-0451 | CRLF injection vulnerability in Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 allows remote web servers to bypass intended Content Security Policy (CSP) restrictions and possibly conduct cross-site scripting (XSS) attacks via crafted HTTP headers. | 2 | 4.3 | Medium | 2017-01-19 | 2012-12-18 | View | |
| 395 | CVE-2008-0417 | CRLF injection vulnerability in Mozilla Firefox before 2.0.0.12 allows remote user-assisted web sites to corrupt the user"s password store via newlines that are not properly handled when the user saves a password. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 41212 | CVE-2013-6009 | CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the ajax/defer servlet. | 2 | 4.3 | Medium | 2017-01-18 | 2013-10-04 | View |
Page 2716 of 17672, showing 5 records out of 88360 total, starting on record 13576, ending on 13580