Записи aquaplatform
9 опубликованных записей вендора aquaplatform.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-134 Use of Externally-Controlled Format String1
- CWE-156 Improper Neutralization of Whitespace1
- CWE-176 Improper Handling of Unicode Encoding1
- CWE-285 Improper Authorization1
- CWE-400 Uncontrolled Resource Consumption1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
26Наблюдать | CVE-2025-55128Эксплойта нет | HackerOne community member Dang Hung Vi (vidang04) has reported an uncontrolled resource consumption vulnerability in the “userlog-index.phpaquaplatform · revive adserver · CWE-400 | Средняя6,5 | — | 0,4 % | 20 нояб. 2025 г. |
26Наблюдать | CVE-2026-21641Эксплойта нет | HackerOne community member Jad Ghamloush (0xjad) has reported an authorization bypass vulnerability in the `tracker-delete.php` script of Reaquaplatform · revive adserver · CWE-285 | Средняя6,5 | — | 0,3 % | 20 янв. 2026 г. |
26Наблюдать | CVE-2025-55126Эксплойта нет | HackerOne community member Dang Hung Vi (vidang04) has reported a stored XSS vulnerability involving the navigation box at the top of advertaquaplatform · revive adserver · CWE-79 | Средняя6,5 | — | 0,2 % | 20 нояб. 2025 г. |
24Наблюдать | CVE-2026-21664Эксплойта нет | HackerOne community member Huynh Pham Thanh Luc (nigh7c0r3) has reported a reflected XSS vulnerability in the afr.php delivery script of Revaquaplatform · revive adserver · CWE-79 | Средняя6,1 | — | 0,2 % | 20 янв. 2026 г. |
24Наблюдать | CVE-2026-21642Эксплойта нет | HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the `banner-acl.php` and `channel-acl.php` scripaquaplatform · revive adserver · CWE-79 | Средняя6,1 | — | 0,2 % | 20 янв. 2026 г. |
24Наблюдать | CVE-2026-21663Эксплойта нет | HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the banner-acl.php script of Revive Adserver.aquaplatform · revive adserver · CWE-79 | Средняя6,1 | — | 0,2 % | 20 янв. 2026 г. |
21Наблюдать | CVE-2025-55129Эксплойта нет | HackerOne community member Kassem S.(kassem_s94) has reported that username handling in Revive Adserver was still vulnerable to impersonatioaquaplatform · revive adserver · CWE-176 | Средняя5,4 | — | 0,2 % | 1 дек. 2025 г. |
21Наблюдать | CVE-2025-55127Эксплойта нет | HackerOne community member Dao Hoang Anh (yoyomiski) has reported an improper neutralization of whitespace in the username when adding new uaquaplatform · revive adserver · CWE-156 | Средняя5,4 | — | 0,2 % | 20 нояб. 2025 г. |
10Наблюдать | CVE-2026-21640Эксплойта нет | HackerOne community member Faraz Ahmed (PakCyberbot) has reported a format string injection in the Revive Adserver settings.aquaplatform · revive adserver · CWE-134 | Низкая2,7 | — | 0,2 % | 20 янв. 2026 г. |
- CVE-2025-5512826Наблюдать
HackerOne community member Dang Hung Vi (vidang04) has reported an uncontrolled resource consumption vulnerability in the “userlog-index.php
СредняяCVSS 6,5Эксплойта нетEPSS 0 %aquaplatform · revive adserver20 нояб. 2025 г.
- CVE-2026-2164126Наблюдать
HackerOne community member Jad Ghamloush (0xjad) has reported an authorization bypass vulnerability in the `tracker-delete.php` script of Re
СредняяCVSS 6,5Эксплойта нетEPSS 0 %aquaplatform · revive adserver20 янв. 2026 г.
- CVE-2025-5512626Наблюдать
HackerOne community member Dang Hung Vi (vidang04) has reported a stored XSS vulnerability involving the navigation box at the top of advert
СредняяCVSS 6,5Эксплойта нетEPSS 0 %aquaplatform · revive adserver20 нояб. 2025 г.
- CVE-2026-2166424Наблюдать
HackerOne community member Huynh Pham Thanh Luc (nigh7c0r3) has reported a reflected XSS vulnerability in the afr.php delivery script of Rev
СредняяCVSS 6,1Эксплойта нетEPSS 0 %aquaplatform · revive adserver20 янв. 2026 г.
- CVE-2026-2164224Наблюдать
HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the `banner-acl.php` and `channel-acl.php` scrip
СредняяCVSS 6,1Эксплойта нетEPSS 0 %aquaplatform · revive adserver20 янв. 2026 г.
- CVE-2026-2166324Наблюдать
HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the banner-acl.php script of Revive Adserver.
СредняяCVSS 6,1Эксплойта нетEPSS 0 %aquaplatform · revive adserver20 янв. 2026 г.
- CVE-2025-5512921Наблюдать
HackerOne community member Kassem S.(kassem_s94) has reported that username handling in Revive Adserver was still vulnerable to impersonatio
СредняяCVSS 5,4Эксплойта нетEPSS 0 %aquaplatform · revive adserver1 дек. 2025 г.
- CVE-2025-5512721Наблюдать
HackerOne community member Dao Hoang Anh (yoyomiski) has reported an improper neutralization of whitespace in the username when adding new u
СредняяCVSS 5,4Эксплойта нетEPSS 0 %aquaplatform · revive adserver20 нояб. 2025 г.
- CVE-2026-2164010Наблюдать
HackerOne community member Faraz Ahmed (PakCyberbot) has reported a format string injection in the Revive Adserver settings.
НизкаяCVSS 2,7Эксплойта нетEPSS 0 %aquaplatform · revive adserver20 янв. 2026 г.