CVE Vulnerabilities

CVE-2020-28918

Published: Feb 16, 2021 | Modified: Feb 19, 2021
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

DualShield 5.9.8.0821 allows username enumeration on its login form. A valid username results in prompting for the password, whereas an invalid one will produce an unknown username error message.

Affected Software

Name Vendor Start Version End Version
Dualshield Deepnetsecurity 5.9.8.0821 (including) 5.9.8.0821 (including)

References