Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://hackerone.com/reports/3403727 |
|
Wed, 26 Nov 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Revive-adserver
Revive-adserver revive Adserver |
|
| CPEs | cpe:2.3:a:revive-adserver:revive_adserver:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Revive-adserver
Revive-adserver revive Adserver |
Mon, 24 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Revive
Revive adserver |
|
| Vendors & Products |
Revive
Revive adserver |
Thu, 20 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
ssvc
|
Thu, 20 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralisation of input in Revive Adserver 6.0.0+ causes a reflected XSS attack in the banner-zone.php script. | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2025-11-20T21:44:35.613Z
Reserved: 2025-08-07T15:00:05.575Z
Link: CVE-2025-55124
Updated: 2025-11-20T21:44:27.072Z
Status : Analyzed
Published: 2025-11-20T20:16:23.677
Modified: 2025-11-26T16:56:10.200
Link: CVE-2025-55124
No data.
OpenCVE Enrichment
Updated: 2025-11-24T09:09:30Z