Cross-Site Request Forgery in Revive Adserver by Revive Adserver
CVE-2016-9455
8.8HIGH
What is CVE-2016-9455?
Revive Adserver versions prior to 3.2.3 are susceptible to Cross-Site Request Forgery (CSRF) vulnerabilities. This affects multiple scripts within the application, which could allow an attacker to perform actions on behalf of a user without their consent. The impacted scripts include those responsible for managing banners and tracking, such as 'banner-acl.php' and 'tracker-modify.php'. Exploitation of this vulnerability could lead to unauthorized changes in the user's ad configuration or malicious tracking of user interactions.
Affected Version(s)
Revive Adserver All before 3.2.3 Revive Adserver All versions before 3.2.3
