cve/2021/CVE-2021-37498.md

19 lines
740 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2021-37498](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-37498)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
An SSRF issue was discovered in Reprise License Manager (RLM) web interface through 14.2BL4 that allows remote attackers to trigger outbound requests to intranet servers, conduct port scans via the actserver parameter in License Activation function.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/blakduk/Advisories