NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 45279 | CVE-2012-3696 | CRLF injection vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP request splitting attacks via a crafted web site that leverages improper WebSockets URI handling. | 2 | 4.3 | Medium | 2017-01-19 | 2013-03-21 | View | |
| 71963 | CVE-2004-1584 | CRLF injection vulnerability in wp-login.php in WordPress 1.2 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the text parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 54217 | CVE-2007-2047 | CRLF injection vulnerability in www/delivery/ck.php in Openads 2.3 (aka Max Media Manager, MMM) before 0.3.31-alpha-pr3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the destination parameter. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 51236 | CVE-2009-4086 | CRLF injection vulnerability in Xerver HTTP Server 4.31 and 4.32 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via certain byte sequences at the end of a URL. NOTE: some of these details are obtained from third party information. | 2 | 5 | Medium | 2017-01-07 | 2011-12-12 | View | |
| 2302 | CVE-2008-2383 | CRLF injection vulnerability in xterm allows user-assisted attackers to execute arbitrary commands via LF (aka ) characters surrounding a command name within a Device Control Request Status String (DECRQSS) escape sequence in a text file, a related issue to CVE-2003-0063 and CVE-2003-0071. | 2 | 9.3 | High | 2017-01-03 | 2012-10-30 | View |
Page 2734 of 17672, showing 5 records out of 88360 total, starting on record 13666, ending on 13670