CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. Its EPSS score suggests a 18.1% probability of exploitation in the next 30 days. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2020-28185
Severity
MEDIUM
CVSS
5.3
EPSS
18.07%
Original NVD Description
User Enumeration vulnerability in TerraMaster TOS <= 4.2.06 allows remote unauthenticated attackers to identify valid users within the system via the username parameter to wizard/initialise.php.
Related CVEs
Other vulnerabilities affecting the same vendor(s)