Skip to content
Noroxi

dmasoftlab records

4 published records for vendor dmasoftlab.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 21

Bar: total · dark part: CISA KEV.

All records

4 records
  • DMA Softlab Radius Manager 4.4.0 assigns the same session cookie to every admin session.

    CriticalCVSS 9.8No exploitEPSS 3%

    dmasoftlab · dma radius managerApr 2, 2021

  • DMA Softlab Radius Manager 4.4.0 allows CSRF with impacts such as adding new manager accounts via admin.php.

    HighCVSS 8.8Proof of conceptEPSS 4%

    dmasoftlab · radius managerApr 6, 2021

  • DMA Softlab Radius Manager 4.4.0 is affected by Cross Site Scripting (XSS) via the description, name, or address field (under admin.php).

    MediumCVSS 6.1No exploitEPSS 1%

    dmasoftlab · dma radius managerApr 2, 2021

  • CVE-2010-4275
    14Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in Radius Manager 3.8.0 allow remote authenticated administrators to inject arbitrary we

    LowCVSS 3.5Proof of conceptEPSS 1%

    dmasoftlab · radius managerDec 21, 2010