CNNVD-202601-3173 Information

CNNVD ID

CNNVD-202601-3173

CVE-2026-21640

  • CNNVD Published: 2026-01-20

Description (Chinese)

Revive Adserver是Revive Adserver团队的一套开源的广告管理系统。该系统提供广告投放、广告位管理、数据统计等功能。 Revive Adserver存在安全漏洞,该漏洞源于设置中存在格式字符串注入,当设置中使用特定字符组合时,可能导致管理员控制台因致命PHP错误而被禁用。

Description (English)

Revive Adserver is an open-source advertising management system for the Revive Adserver team. The system provides advertising, position management, data statistics, etc. Revive Adserver has a security loophole, which results from the infusion of a format string in the settings, which, when specified character combinations are used in the settings, may lead to the administrator control being disabled by a fatal PHP error.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Revive Adserver

Published

2026-01-20

Last Modified

2026-02-24

References

https://hackerone.com/reports/3445332 https://access.redhat.com/security/cve/cve-2026-21640

Patch

https://www.revive-adserver.com/download/

Share on: