CVE-2021-37498 Information

Description

An SSRF issue was discovered in Reprise License Manager (RLM) web interface through 14.2BL4 that allows remote attackers to trigger outbound requests to intranet servers conduct port scans via the actserver parameter in License Activation function.

Reference

http://reprisesoftware.com https://github.com/blakduk/Advisories/blob/main/Reprise%20License%20Manager/README.md http://reprise.com

Share on: