NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 19011 | CVE-2016-3166 | CRLF injection vulnerability in the drupal_set_header function in Drupal 6.x before 6.38, when used with PHP before 5.1.2, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks by leveraging a module that allows user-submitted data to appear in HTTP headers. | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-12 | View | |
| 64544 | CVE-2006-5969 | CRLF injection vulnerability in the evalFolderLine function in fvwm 2.5.18 and earlier allows local users to execute arbitrary commands via carriage returns in a directory name, which is not properly handled by fvwm-menu-directory, a variant of CVE-2003-1308. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 56589 | CVE-2007-4464 | CRLF injection vulnerability in the Fileinfo 2.0.9 plugin for Total Commander allows user-assisted remote attackers to spoof the information in the Image File Header tab via strings with CRLF sequences in the IMAGE_EXPORT_DIRECTORY array in a PE file, which could complicate forensics investigations. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 54070 | CVE-2007-1900 | CRLF injection vulnerability in the FILTER_VALIDATE_EMAIL filter in ext/filter in PHP 5.2.0 and 5.2.1 allows context-dependent attackers to inject arbitrary e-mail headers via an e-mail address with a " " character, which causes a regular expression to ignore the subsequent part of the address string. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 48745 | CVE-2009-1469 | CRLF injection vulnerability in the Forgot Password implementation in server/webmail.php in IceWarp eMail Server and WebMail Server before 9.4.2 makes it easier for remote attackers to trick a user into disclosing credentials via CRLF sequences preceding a Reply-To header in the subject element of an XML document, as demonstrated by triggering an e-mail message from the server that contains a user"s correct credentials, and requests that the user compose a reply that includes this message. | 2 | 4.3 | Medium | 2017-01-07 | 2009-05-16 | View |
Page 2724 of 17672, showing 5 records out of 88360 total, starting on record 13616, ending on 13620