Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jhq7-888q-jw4m

Опубликовано: 02 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

HackerOne community member Kassem S.(kassem_s94) has reported that username handling in Revive Adserver was still vulnerable to impersonation attacks after the fix for CVE-2025-52672, via several alternate techniques. Homoglyphs based impersonation has been independently reported by other HackerOne users, such as itz_hari_ and khoof.

HackerOne community member Kassem S.(kassem_s94) has reported that username handling in Revive Adserver was still vulnerable to impersonation attacks after the fix for CVE-2025-52672, via several alternate techniques. Homoglyphs based impersonation has been independently reported by other HackerOne users, such as itz_hari_ and khoof.

EPSS

Процентиль: 5%
0.00021
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-176

Связанные уязвимости

CVSS3: 5.4
nvd
2 месяца назад

HackerOne community member Kassem S.(kassem_s94) has reported that username handling in Revive Adserver was still vulnerable to impersonation attacks after the fix for CVE-2025-52672, via several alternate techniques. Homoglyphs based impersonation has been independently reported by other HackerOne users, such as itz_hari_ and khoof.

EPSS

Процентиль: 5%
0.00021
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-176