Vulnerability Details CVE-2018-15574
An issue was discovered in the license editor in Reprise License Manager (RLM) through 12.2BL2. It is a cross-site scripting vulnerability in the /goform/edit_lf_get_data lf parameter via GET or POST. NOTE: the vendor has stated "We do not consider this a vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.2%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2018-15574
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:11.0
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:11.1
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:11.2
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:11.3
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.0
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.0bl2
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.1
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.1bl2
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.2
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.2bl2
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.3
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.3bl4
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:12.4
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:13.0
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:14.2
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:14.2bl4
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:15.0
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:15.1
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:15.2
-
cpe:2.3:a:reprisesoftware:reprise_license_manager:9.0bl2