Medium severity5.3NVD Advisory· Published Dec 13, 2021· Updated Jun 17, 2026
CVE-2021-44155
CVE-2021-44155
Description
An issue was discovered in /goform/login_process in Reprise RLM 14.2. When an attacker attempts to login, the response if a username is valid includes Login Failed, but does not include this string if the username is invalid. This allows an attacker to enumerate valid users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:reprisesoftware:reprise_license_manager:*:*:*:*:*:*:*:*Range: >=14.2,<15.1
- Reprise/RLMdescription
- Range: =14.2
Patches
Vulnerability mechanics
References
3- reprisesoftware.com/admin/rlm-admin-download.phpnvdPatchProductVendor Advisory
- packetstormsecurity.com/files/165182/Reprise-License-Manager-14.2-User-Enumeration.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.reprisesoftware.com/RELEASE_NOTESnvdBroken Link
News mentions
0No linked articles in our index yet.