Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in logging/logviewer.jsp in the Management Console in Adobe JRun Application Server 4 Updater 7 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the logfile parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Adobe JRun的管理控制台 'logging/logviewer.jsp'目录遍历漏洞
Vulnerability Description
Adobe JRun是一款商业Web容器和应用服务器。 JRun的管理控制台的logging/logviewer.jsp存在目录遍历漏洞。没有正确地验证用户所提供的输入参数,如果用户受骗跟随了恶意链接就会触发目录遍历,导致泄漏敏感信息或在用户浏览器会话中执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A