Vulnerability Description
DMA Softlab Radius Manager 4.4.0 is affected by Cross Site Scripting (XSS) via the description, name, or address field (under admin.php).
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dmasoftlab | Dma Radius Manager | 4.4.0 |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/164154/DMA-Softlab-Radius-Manager-4.4.0-SesExploitThird Party AdvisoryVDB Entry
- https://github.com/1d8/publications/tree/main/cve-2021-29011ExploitThird Party Advisory
- https://sourceforge.net/projects/radiusmanager/ProductThird Party Advisory
- http://packetstormsecurity.com/files/164154/DMA-Softlab-Radius-Manager-4.4.0-SesExploitThird Party AdvisoryVDB Entry
- https://github.com/1d8/publications/tree/main/cve-2021-29011ExploitThird Party Advisory
- https://sourceforge.net/projects/radiusmanager/ProductThird Party Advisory
FAQ
What is CVE-2021-29011?
CVE-2021-29011 is a vulnerability with a CVSS score of 6.1 (MEDIUM). DMA Softlab Radius Manager 4.4.0 is affected by Cross Site Scripting (XSS) via the description, name, or address field (under admin.php).
How severe is CVE-2021-29011?
CVE-2021-29011 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-29011?
Check the references section above for vendor advisories and patch information. Affected products include: Dmasoftlab Dma Radius Manager.