Описание
Reprise License Manager 14.2 is affected by an Information Disclosure vulnerability via a GET request to /goforms/rlminfo. No authentication is required. The information disclosed is associated with software versions, process IDs, network configuration, hostname(s), system architecture, and file/directory details.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
- Broken Link
- Product
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
- Broken Link
- Product
Уязвимые конфигурации
Конфигурация 1Версия от 14.2 (включая) до 15.1 (исключая)
cpe:2.3:a:reprisesoftware:reprise_license_manager:*:*:*:*:*:*:*:*
EPSS
Процентиль: 97%
0.40631
Средний
5.3 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-425
Связанные уязвимости
CVSS3: 5.3
github
почти 4 года назад
Reprise License Manager 14.2 is affected by an Information Disclosure vulnerability via a GET request to /goforms/rlminfo. No authentication is required. The information disclosed is associated with software versions, process IDs, network configuration, hostname(s), system architecture, and file/directory details.
EPSS
Процентиль: 97%
0.40631
Средний
5.3 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-425