PT-2025-47615 · Unknown · Revive Adserver

Published

2025-11-20

·

Updated

2025-11-20

·

CVE-2025-48987

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Revive Adserver versions 5.5.2 and 6.0.1 and earlier
Description The software contains a flaw due to improper input handling, potentially leading to a reflected Cross-Site Scripting (XSS) attack. This could allow an attacker to inject malicious scripts into web pages viewed by users.
Recommendations Update to a version later than 6.0.1. Update to a version later than 5.5.2.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-48987

Affected Products

Revive Adserver