4
CVSSv2

CVE-2009-1873

Published: 18/08/2009 Updated: 10/10/2018
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 405
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in logging/logviewer.jsp in the Management Console in Adobe JRun Application Server 4 Updater 7 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the logfile parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe jrun 4.0

Exploits

Digital Security Research Group [DSecRG] Advisory #DSECRG-09-052 Application: Adobe JRun Application Server Versions Affected: 4 updater 7 Vendor URL: wwwadobecom/products/jrun/ Bug: Directory Traversal File Read Exploits: YES Reported: 20 ...
Adobe JRun Application Server version 4 updater 7 suffers from a directory traversal vulnerability ...