CVE-2025-52666EPSS p34.3%

CVE-2025-52666CVE-2025-52666

revive-adserver / revive_adserver

Description

Improper neutralisation of format characters in the settings of Revive Adserver 5.5.2 and 6.0.1 and earlier versions causes an administrator user to disable the admin user console due to a fatal PHP error.

Scoring

CVSS 2.7 ()
VectorCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
EPSS0.42% probability of exploitation · percentile 34.3% · 2026-10-05T12:00:23Z
Last modified2026-09-26
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.