Описание
CRLF vulnerability in Reprise License Manager (RLM) web interface through 14.2BL4 in the password parameter in View License Result function, that allows remote attackers to inject arbitrary HTTP headers.
Ссылки
- Not Applicable
- Product
- Third Party Advisory
- Not Applicable
- Product
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 17.0 (исключая)
cpe:2.3:a:reprisesoftware:reprise_license_manager:*:*:*:*:*:*:*:*
EPSS
Процентиль: 40%
0.0018
Низкий
6.5 Medium
CVSS3
Дефекты
NVD-CWE-Other
CWE-74
Связанные уязвимости
CVSS3: 6.5
github
около 3 лет назад
CRLF vulnerability in Reprise License Manager (RLM) web interface through 14.2BL4 in the password parameter in View License Result function, that allows remote attackers to inject arbitrary HTTP headers.
EPSS
Процентиль: 40%
0.0018
Низкий
6.5 Medium
CVSS3
Дефекты
NVD-CWE-Other
CWE-74