CNNVD-202511-2302 Information

CNNVD ID

CNNVD-202511-2302

CVE-2025-52669

  • CNNVD Published: 2025-11-20

Description (Chinese)

Revive Adserver是Revive Adserver团队的一套开源的广告管理系统。该系统提供广告投放、广告位管理、数据统计等功能。 Revive Adserver 5.5.2版本和6.0.1版本及之前版本存在安全漏洞,该漏洞源于用户管理系统设计不安全,可能导致非管理员用户访问其他用户信息。

Description (English)

Revive Adserver is an open-source advertising management system for the Revive Adserver team. The system provides advertising, position management, data statistics, etc. There is a security gap between Revive Adserver, Versions 5.5.2 and 6.0.1 and previous versions, which stems from the insecurities in the design of the user management system, which may result in non-administer users accessing other user information.

Hazard Level

High

Vulnerability Type

其他

Published

2025-11-20

Last Modified

2026-02-24

References

https://hackerone.com/reports/3401464

Patch

https://www.revive-adserver.com/download/

Share on: