cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2009-1873,https://securityvulnerability.io/vulnerability/CVE-2009-1873,,Directory traversal vulnerability in logging/logviewer.jsp in the Management Console in Adobe JRun Application Server 4 Updater 7 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the logfile parameter.,Adobe,Jrun,,,0.033900000154972076,false,,false,false,false,,,false,false,,2009-08-18T22:00:00.000Z,0 CVE-2009-1874,https://securityvulnerability.io/vulnerability/CVE-2009-1874,,Multiple cross-site scripting (XSS) vulnerabilities in the Management Console in Adobe JRun 4.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.,Adobe,Jrun,,,0.020600000396370888,false,,false,false,false,,,false,false,,2009-08-18T22:00:00.000Z,0 CVE-2007-1278,https://securityvulnerability.io/vulnerability/CVE-2007-1278,,"Unspecified vulnerability in the IIS connector in Adobe JRun 4.0 Updater 6, and ColdFusion MX 6.1 and 7.0 Enterprise, when using Microsoft IIS 6, allows remote attackers to cause a denial of service via unspecified vectors, involving the request of a file in the JRun web root.",Adobe,"Coldfusion,Jrun",,,0.02346000075340271,false,,false,false,false,,,false,false,,2007-03-16T20:00:00.000Z,0 CVE-2006-5860,https://securityvulnerability.io/vulnerability/CVE-2006-5860,,"Cross-site scripting (XSS) vulnerability in the administrator console for Adobe JRun 4.0, as used in ColdFusion, allows remote attackers to inject arbitrary web script or HTML via unknown vectors.",Adobe,"Jrun,Coldfusion",,,0.004530000034719706,false,,false,false,false,,,false,false,,2007-02-14T02:00:00.000Z,0 CVE-2006-5858,https://securityvulnerability.io/vulnerability/CVE-2006-5858,,"Adobe ColdFusion MX 7 through 7.0.2, and JRun 4, when run on Microsoft IIS, allows remote attackers to read arbitrary files, list directories, or read source code via a double URL-encoded NULL byte in a ColdFusion filename, such as a CFM file.",Adobe,"Coldfusion,Jrun",,,0.1071000024676323,false,,false,false,false,,,false,false,,2006-12-31T05:00:00.000Z,0