ZeroHour

CVE-2025-55123

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p38
Published
()
Modified
Description

Improper neutralization of input in Revive Adserver 5.5.2 and 6.0.1 and earlier versions causes manager accounts to be able to craft XSS attacks to their own advertiser users.

Vendors
revive-adserver
Products
revive adserver
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.