Description
Cross-site scripting (XSS) vulnerability in lib/max/Admin/UI/Field/PublisherIdField.php in Revive Adserver before 3.0.6 allows remote attackers to inject arbitrary web script or HTML via the refresh_page parameter to www/admin/report-generate.php.
Remediation
References
Related Vulnerabilities
Drupal CVE-2017-6925 Vulnerability (CVE-2017-6925)
WordPress Plugin Secure Copy Content Protection and Content Locking SQL Injection (2.6.6)
Oracle JRE CVE-2014-0464 Vulnerability (CVE-2014-0464)
Oracle Database Server CVE-2006-5332 Vulnerability (CVE-2006-5332)
Moodle Uncontrolled Recursion Vulnerability (CVE-2021-36395)