CVE-2021-22873
Revive Adserver 5.0.5 Cross Site Scripting / Open Redirect
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
Revive Adserver before 5.1.0 is vulnerable to open redirects via the `dest`, `oadest`, and/or `ct0` parameters of the lg.php and ck.php delivery scripts. Such open redirects had previously been available by design to allow third party ad servers to track such metrics when delivering ads. However, third party click tracking via redirects is not a viable option anymore, leading to such open redirect functionality being removed and reclassified as a vulnerability.
Revive Adserver versiones anteriores a 5.1.0 es vulnerable a redireccionamientos abiertos por medio de los parámetros "dest","oadest" y/o "ct0" de los scripts de entrega de los archivos lg.php y ck.php. Estos redireccionamientos abiertos habían estado disponibles anteriormente por diseño para permitir a unos servidores de anuncios de terceros rastrear tales métricas al entregar anuncios. Sin embargo, el seguimiento de clics de terceros por medio de los redireccionamientos ya no es una opción viable, conllevando a que dicha funcionalidad de redireccionamiento abierto sea eliminada y reclasificada como una vulnerabilidad
Revive Adserver versions 5.0.5 and below suffer from persistent and reflective cross site scripting and open redirection vulnerabilities.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-06 CVE Reserved
- 2021-01-21 CVE Published
- 2023-08-09 First Exploit
- 2024-05-26 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/161070/Revive-Adserver-5.0.5-Cross-Site-Scripting-Open-Redirect.html | Third Party Advisory | |
http://seclists.org/fulldisclosure/2021/Jan/60 | Broken Link | |
https://github.com/revive-adserver/revive-adserver/issues/1068 | Issue Tracking |
URL | Date | SRC |
---|---|---|
https://github.com/K3ysTr0K3R/CVE-2021-22873-EXPLOIT | 2023-08-09 | |
https://hackerone.com/reports/1081406 | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.revive-adserver.com/security/revive-sa-2021-001 | 2021-02-02 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Revive-adserver Search vendor "Revive-adserver" | Revive Adserver Search vendor "Revive-adserver" for product "Revive Adserver" | < 5.1.0 Search vendor "Revive-adserver" for product "Revive Adserver" and version " < 5.1.0" | - |
Affected
|