Vulnerabilities > Revive Adserver > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-23 CVE-2021-22948 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in Revive-Adserver Revive Adserver
Vulnerability in the generation of session IDs in revive-adserver < 5.3.0, based on the cryptographically insecure uniqid() PHP function.
network
low complexity
revive-adserver CWE-338
7.1
2019-05-28 CVE-2019-5440 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in Revive-Adserver Revive Adserver
Use of cryptographically weak PRNG in the password recovery token generation of Revive Adserver < v4.2.1 causes a potential authentication bypass attack if an attacker exploits the password recovery functionality.
network
high complexity
revive-adserver CWE-338
8.1
2017-03-28 CVE-2016-9456 Cross-Site Request Forgery (CSRF) vulnerability in Revive-Adserver Revive Adserver
Revive Adserver before 3.2.3 suffers from Cross-Site Request Forgery (CSRF).
network
low complexity
revive-adserver CWE-352
8.8
2017-03-28 CVE-2016-9455 Cross-Site Request Forgery (CSRF) vulnerability in Revive-Adserver Revive Adserver
Revive Adserver before 3.2.3 suffers from Cross-Site Request Forgery (CSRF).
network
low complexity
revive-adserver CWE-352
8.8
2017-03-28 CVE-2016-9127 Cross-Site Request Forgery (CSRF) vulnerability in Revive-Adserver Revive Adserver
Revive Adserver before 3.2.3 suffers from Cross-Site Request Forgery (CSRF).
network
low complexity
revive-adserver CWE-352
8.8