CNNVD-202511-2306 Information

CNNVD ID

CNNVD-202511-2306

CVE-2025-48986

  • CNNVD Published: 2025-11-20

Description (Chinese)

Revive Adserver是Revive Adserver团队的一套开源的广告管理系统。该系统提供广告投放、广告位管理、数据统计等功能。 Revive Adserver 5.5.2版本和6.0.1版本及之前版本存在安全漏洞,该漏洞源于授权绕过,可能导致账户接管。

Description (English)

Revive Adserver is an open-source advertising management system for the Revive Adserver team. The system provides advertising, position management, data statistics, etc. There is a security loophole in Revive Adserver, Versions 5.5.2 and 6.0.1 and earlier versions, which stems from the circumvention of the authorization and may lead to the taking over of the account.

Hazard Level

Critical

Vulnerability Type

其他

Published

2025-11-20

Last Modified

2026-02-24

References

https://hackerone.com/reports/3398283

Patch

https://www.revive-adserver.com/download/

Share on: