Reprise License Manager version 14.2 suffers from cross site scripting and information disclosure vulnerabilities. The vendor has contacted Packet Storm to note that in v15.1 they have fixed this issue by now requiring login for the rlminfo route.
370fa6ba6f1124cf756ea20795a146d132468475c831aa36bf2f91715035bac6