CVE-2020-28918: Deepnetsecurity Dualshield

Medium severity, CVSS 5.3. EPSS: 1.1% chance of exploitation in the next 30 days.

DualShield 5.9.8.0821 allows username enumeration on its login form. A valid username results in prompting for the password, whereas an invalid one will produce an "unknown username" error message.

Affected products

Published 2021-02-16. Last modified 2026-06-17.