Known Vulnerabilities for Revive Adserver by Revive-sas
Listed below are 1 of the newest known vulnerabilities associated with "Revive Adserver" by "Revive-sas".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-50744 json | A bypass to the admin‑only restriction of the XML‑RPC API in Revive Adserver 6.0.7. The API response for the ox.login met... | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2026-50743 json | A CSRF vulnerability exists in the `zone-include.php` script in Revive Adserver 6.0.7. Linking and unlinking banners or campa... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-50742 json | A stored XSS vulnerabilities exists in the `maintenance-acl-check.php` and `maintenance-banners-check.php` tools of Revive Ad... | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2026-50740 json | A missing sanitisation vulnerability of user input in the zone-include.php script exists in Revive Adserver 6.0.7 and earlier... | Not Provided | 2026-06-26 | 2026-07-08 |
| CVE-2026-50739 json | A bypass for CVE‑2026‑34913 exists with proper ownership validation that had not been applied to the reverse operation of... | Not Provided | 2026-06-26 | 2026-06-26 |
| CVE-2026-44959 json | A missing validation of user input exists when saving delivery limitations in Revive Adserver 6.0.6 and earlier. A low‑priv... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-44958 json | An access control bypass allows an advertiser‑level user to activate or deactivate a banner in Revive Adserver 6.0.6 and ea... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-44957 json | A missing access control check when invoking various modify methods in the XML‑RPC API of Revive Adserver 6.0.6 and earlier... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-34916 json | A missing validation of user input when saving delivery limitations in Revive Adserver 6.0.6 and earlier could allow a low‑... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-34915 json | A missing sanitisation of user input in the zone-include.php script of Revive Adserver 6.0.6 and earlier could allow a low‑... | Not Provided | 2026-06-23 | 2026-06-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Revive-sas | Revive Adserver | 4.2.0 |