The default Flash cross-domain policy (crossdomain.xml) in Revive Adserver before 3.2.2 does not restrict access cross domain access, which allows remote attackers to conduct cross domain attacks via unspecified vectors.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2015-10-14T19:00:00

Updated: 2024-08-06T07:43:46.195Z

Reserved: 2015-09-25T00:00:00

Link: CVE-2015-7369

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-10-14T19:59:08.393

Modified: 2018-10-09T19:58:04.800

Link: CVE-2015-7369

cve-icon Redhat

No data.