Описание
Reprise License Manager 14.2 is affected by a reflected cross-site scripting vulnerability in the /goform/activate_process "count" parameter via GET. No authentication is required.
Ссылки
- Broken Link
- ExploitThird Party Advisory
- ExploitMailing ListThird Party Advisory
- Third Party Advisory
- Broken Link
- ExploitMailing ListThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 14.2 (включая) до 16.0 (исключая)
cpe:2.3:a:reprisesoftware:reprise_license_manager:*:*:*:*:*:*:*:*
EPSS
Процентиль: 92%
0.08607
Низкий
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 6.1
github
около 4 лет назад
Reprise License Manager 14.2 is affected by a reflected cross-site scripting vulnerability in the /goform/activate_process "count" parameter via GET. No authentication is required.
EPSS
Процентиль: 92%
0.08607
Низкий
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-79