CVE-2015-7368

Revive-adserver Revive Adserver < 3.2.1 - Information Disclosure

Title source: rule
STIX 2.1

Description

Revive Adserver before 3.2.2 does not send the appropriate Cache-Control HTTP headers in responses for admin UI pages, which allows local users to obtain sensitive information via the web browser cache.

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/536633/100/0/threaded
Mailing List mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2015/Oct/32

Scores

EPSS 0.0006
EPSS Percentile 19.2%

Details

CWE
CWE-200
Status published
Products (1)
revive-adserver/revive_adserver < 3.2.1
Published Oct 14, 2015
Tracked Since Feb 18, 2026