### [CVE-2023-43183](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-43183) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Incorrect access control in Reprise License Management Software Reprise License Manager v15.1 allows read-only users to arbitrarily change the password of an admin and hijack their account. ### POC #### Reference - http://seclists.org/fulldisclosure/2024/Jan/43 - https://packetstormsecurity.com/files/176841/Reprise-License-Manager-15.1-Privilege-Escalation-File-Write.html #### Github - https://github.com/fkie-cad/nvd-json-data-feeds