Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-53931

Опубликовано: 17 дек. 2025
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

Revive Adserver 5.4.1 contains a cross-site scripting vulnerability in the banner advanced configuration page that allows attackers to inject malicious scripts. Attackers can craft a malicious link to the banner-advanced.php endpoint with XSS payloads in prepend and append parameters to execute arbitrary JavaScript when an admin views the page.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:revive-adserver:revive_adserver:5.4.1:*:*:*:*:*:*:*

EPSS

Процентиль: 8%
0.0003
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
github
около 2 месяцев назад

Revive Adserver 5.4.1 contains a cross-site scripting vulnerability in the banner advanced configuration page that allows attackers to inject malicious scripts. Attackers can craft a malicious link to the banner-advanced.php endpoint with XSS payloads in prepend and append parameters to execute arbitrary JavaScript when an admin views the page.

EPSS

Процентиль: 8%
0.0003
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79