High severity7.5NVD Advisory· Published Oct 30, 2018· Updated Jun 17, 2026
CVE-2015-7266
CVE-2015-7266
Description
The Interactive Advertising Bureau (IAB) OpenRTB 2.3 protocol implementation might allow remote attackers to conceal the status of ad transactions and potentially compromise bid integrity by leveraging failure to limit the time between bid responses and impression notifications, aka the Amnesia Bug.
Affected products
2- cpe:2.3:a:iab:open_real-time_bidding:2.3:*:*:*:*:*:*:*
- Range: 2.3
Patches
Vulnerability mechanics
References
1- media.pixalate.com/white-papers/xindi.pdfnvdExploitMitigationThird Party Advisory
News mentions
0No linked articles in our index yet.