Vulnerabilities > Dmasoftlab > DMA Radius Manager > 4.4.0

DATE CVE VULNERABILITY TITLE RISK
2021-04-02 CVE-2021-29012 Improper Authentication vulnerability in Dmasoftlab DMA Radius Manager 4.4.0
DMA Softlab Radius Manager 4.4.0 assigns the same session cookie to every admin session.
network
low complexity
dmasoftlab CWE-287
7.5
2021-04-02 CVE-2021-29011 Cross-site Scripting vulnerability in Dmasoftlab DMA Radius Manager 4.4.0
DMA Softlab Radius Manager 4.4.0 is affected by Cross Site Scripting (XSS) via the description, name, or address field (under admin.php).
network
dmasoftlab CWE-79
4.3