CVE Database
/

CVE-2016-9470

Back to search

CVE-2016-9470

Published: Mar 28, 2017

Modified: Aug 6, 2024

PUBLISHED

Description

Revive Adserver before 3.2.5 and 4.0.0 suffers from Reflected File Download. `www/delivery/asyncspc.php` was vulnerable to the fairly new Reflected File Download (RFD) web attack vector that enables attackers to gain complete control over a victim's machine by virtually downloading a file from a trusted domain.

VendorProductVersions

n/a

Revive Adserver All versions before 3.2.5 and 4.0.0

affected
Revive Adserver All versions before 3.2.5 and 4.0.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now