CVE-2025-52668
Improper input neutralization in the stats-conversions.php script in Revive Adserver 5.5.2 and 6.0.1 and earlier version
Improper input neutralization in the stats-conversions.php script in Revive Adserver 5.5.2 and 6.0.1 and earlier versions causes potential information disclosure and session hijacking via a stored XSS attack.
MEDIUM · CVSS 5.4
EPSS 0.00018
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0