PT-2024-13166 · Reprise · Reprise License Manager

Mohaiman Rahim

·

Published

2024-02-03

·

Updated

2025-04-30

·

CVE-2023-44031

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Reprise License Manager version 15.1
Description The issue is related to incorrect access control in the software, allowing attackers to save sensitive files in insecure locations using a crafted POST request.
Recommendations For Reprise License Manager version 15.1, consider restricting access to sensitive file operations until a patch is available. As a temporary workaround, limit the ability to save files in insecure locations to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2023-44031

Affected Products

Reprise License Manager