CyberSec.Space Logo
Back to CVE Browser

CVE-2016-9470

CRITICAL
9.0
CVSS Severity Score
EPSS Score0.0390%
EPSS Percentile35.80th
PublishedMar 28, 2017
Last ModifiedMay 13, 2026

Vulnerability Description

Revive Adserver before 3.2.5 and 4.0.0 suffers from Reflected File Download. `www/delivery/asyncspc.php` was vulnerable to the fairly new Reflected File Download (RFD) web attack vector that enables attackers to gain complete control over a victim's machine by virtually downloading a file from a trusted domain.

Affected Platforms (CPE)

πŸ“¦
Revive Adserver

Revive Adserver

<= 3.2.4
πŸ“¦
Revive Adserver

Revive Adserver

= 4.0.0

References & Advisories

Related Vulnerabilities