Reprise Known Exploited Vulnerabilities
Evidence-backed KEV intelligence for Reprise products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.
Total KEVs
3
In CISA KEV
0
Beyond CISA KEV
3
Sensor Observed
0
Virtual Patch Available
0
Reprise KEVs Added by Year
3 Reprise KEVs added all time (primary attestation date).
Attested CVEs
| CVE | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2022-28363
Reprise License Manager 14.2 is affected by a reflected cross-site scripting vulnerability (XSS) in the /goform/login_process username parameter... |
Reprise License Manager | High | Not in CISA | 09 Apr 2022 |
|
CVE-2022-28365
Reprise License Manager 14.2 is affected by an Information Disclosure vulnerability via a GET request to /goforms/rlminfo. No authentication is... |
Reprise License Manager | High | Not in CISA | 09 Apr 2022 |
|
CVE-2021-45422
Reprise License Manager 14.2 is affected by a reflected cross-site scripting vulnerability in the /goform/activate_process "count" parameter via... |
Reprise License Manager | High | Not in CISA | 13 Jan 2022 |
Common Vulnerability Classes (CWE)
- CWE-79 — Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') 2
- CWE-425 — Direct Request ('Forced Browsing') 1
Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology