Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://hackerone.com/reports/3399191 |
|
Tue, 25 Nov 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Revive-adserver
Revive-adserver revive Adserver |
|
| CPEs | cpe:2.3:a:revive-adserver:revive_adserver:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Revive-adserver
Revive-adserver revive Adserver |
|
| Metrics |
cvssV3_1
|
Mon, 24 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Revive
Revive adserver |
|
| Vendors & Products |
Revive
Revive adserver |
Thu, 20 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
ssvc
|
Thu, 20 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input in Revive Adserver 5.5.2 and 6.0.1 and earlier versions causes a potential reflected XSS attack. | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2025-11-20T21:39:46.821Z
Reserved: 2025-05-29T15:00:04.775Z
Link: CVE-2025-48987
Updated: 2025-11-20T21:39:38.652Z
Status : Analyzed
Published: 2025-11-20T20:16:22.550
Modified: 2025-11-25T18:56:45.073
Link: CVE-2025-48987
No data.
OpenCVE Enrichment
Updated: 2025-11-24T09:10:04Z