CVE-2025-52664: SQL Injection
Published Oct 30, 2025
·Updated
SQL injection in Revive Adserver 6.0.0 causes potential disruption or information access when specifically crafted payloads are sent by logged in users
Affected Software
2 affected components
Revive Adserver
revive-adserver Revive Adserver=6.0.0
Remediation
Patch Available
Patch Available
Event History
Oct 30, 2025
CVE Published
via MITRE·11:29 PM
Data Sourced
via MITRE·11:29 PM
DescriptionSeverity
Oct 31, 2025
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-52664?
CVE-2025-52664 is considered a high-severity vulnerability due to its potential for SQL injection by authenticated users.
2
How do I fix CVE-2025-52664?
To fix CVE-2025-52664, upgrade to a patched version of Revive Adserver that addresses the SQL injection vulnerability.
3
Who is affected by CVE-2025-52664?
Authenticated users of Revive Adserver 6.0.0 are primarily affected by CVE-2025-52664.
4
What types of attacks are possible with CVE-2025-52664?
CVE-2025-52664 enables attackers to perform SQL injection attacks, potentially leading to data disruption or unauthorized information access.
5
Is CVE-2025-52664 related to any specific software version?
Yes, CVE-2025-52664 specifically affects Revive Adserver version 6.0.0.