vendor:
revive-adserver
by:
Mirabbas Agalarov
7.4
CVSS
HIGH
Cross-Site Scripting (XSS)
79
CWE
Product Name: revive-adserver
Affected Version From: 5.4.2001
Affected Version To: 5.4.2001
Patch Exists: NO
Related CWE:
CPE: a:revive-adserver:revive-adserver:5.4.1
Platforms Tested: Linux
2023
revive-adserver v5.4.1 – Cross-Site Scripting (XSS)
A Cross-Site Scripting (XSS) vulnerability was discovered in revive-adserver v5.4.1. An attacker can exploit this vulnerability by sending a malicious link to the admin. If the admin clicks on the link, they will be exposed to XSS.
Mitigation:
Input validation should be used to prevent XSS attacks.