CVE-2020-28918

DualShield 5.9.8.0821 allows username enumeration on its login form. A valid username results in prompting for the password, whereas an invalid one will produce an "unknown username" error message.
Configurations

Configuration 1 (hide)

cpe:2.3:a:deepnetsecurity:dualshield:5.9.8.0821:*:*:*:*:*:*:*

History

21 Nov 2024, 05:23

Type Values Removed Values Added
References () https://deepnetsecurity.com/multi-factor-authentication/ - Vendor Advisory () https://deepnetsecurity.com/multi-factor-authentication/ - Vendor Advisory
References () https://excellium-services.com/cert-xlm-advisory/CVE-2020-28918 - Third Party Advisory () https://excellium-services.com/cert-xlm-advisory/CVE-2020-28918 - Third Party Advisory

Information

Published : 2021-02-16 20:15

Updated : 2024-11-21 05:23


NVD link : CVE-2020-28918

Mitre link : CVE-2020-28918

CVE.ORG link : CVE-2020-28918


JSON object : View

Products Affected

deepnetsecurity

  • dualshield