🔙 목록으로 돌아가기

CVE-2021-44152: Reprise License Manager 14.2 - Authentication Bypass

TitleReprise License Manager 14.2 - Authentication Bypass
AuthorAkincibor
SeverityCritical
ImpactSuccessful exploitation of this vulnerability could allow an attacker to bypass authentication and gain unauthorized access to the Reprise License Manager.
RemediationApply the latest security patch or upgrade to a patched version of Reprise License Manager to mitigate this vulnerability.
CVSS Score9.8
EPSS Score0.86671
CVE IDCVE-2021-44152
CWE IDCWE-306
Shodan Queryhttp.html:"Reprise License Manager"http.html:"reprise license"http.html:"reprise license manager"
Fofa Querybody="reprise license manager"body="reprise license"
Tags cve cve2021 packetstorm rlm auth-bypass reprisesoftware vuln

🔍 Vulnerability Description

Reprise License Manager (RLM) 14.2 does not verify authentication or authorization and allows unauthenticated users to change the password of any existing user.

🌐 HTTP Request

GET /goforms/menu HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.7 Safari/605.1.15
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-44152.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-44152.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A