Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2022-24388 Vulnerability in rconfig “date” enables an attacker with user level access to the CLI to inject root level commands into Fidelis Network and Deceptio… Deception 9.4.5+ Fix from $1,9502022-05-17 HIGH 8.8 CVE-2022-24389 Vulnerability in rconfig “cert_utils” enables an attacker with user level access to the CLI to inject root level commands into Fidelis Network and De… Deception 9.4.5+ Fix from $1,9502022-05-17 HIGH 8.8 CVE-2022-24390 Vulnerability in rconfig “remote_text_file” enables an attacker with user level access to the CLI to inject user level commands into Fidelis Network … Deception 9.4.5+ Fix from $1,9502022-05-17 HIGH 8.8 CVE-2022-24391 Vulnerability in Fidelis Network and Deception CommandPost enables SQL injection through the web interface by an attacker with user level access. The… Deception 9.4.5+ Fix from $1,9502022-05-17 HIGH 8.8 CVE-2022-24392 Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web interface using the “feed_comm_tes… Deception 9.4.5+ Fix from $1,9502022-05-17 HIGH 8.8 CVE-2022-24393 Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web interface using the “check_vertica… Deception 9.4.5+ Fix from $1,9502022-05-17 HIGH 8.8 CVE-2022-24394 Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web interface using the “update_checkf… Deception 9.4.5+ Fix from $1,9502022-05-17 HIGH 7.8 CVE-2022-0486 Improper file permissions in the CommandPost, Collector, Sensor, and Sandbox components of Fidelis Network and Deception enables an attacker with loc… Deception 9.4.5+ Fix from $1,9502022-05-17 HIGH 7.8 CVE-2022-0997 Improper file permissions in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables an attacker with local, admin… Deception 9.4.5+ Fix from $1,9502022-05-17 CRITICAL 9.8 CVE-2021-35048 Vulnerability in Fidelis Network and Deception CommandPost enables unauthenticated SQL injection through the web interface. The vulnerability could l… Deception 9.3.7+ Fix from $2,3002021-06-25 HIGH 8.8 CVE-2021-35047 Vulnerability in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables an attacker with user level access to the… Deception 9.3.7+ Fix from $1,9502021-06-25 HIGH 8.8 CVE-2021-35049 Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web interface. The vulnerability could… Deception 9.3.7+ Fix from $1,9502021-06-25 HIGH 7.5 CVE-2021-35050 User credentials stored in a recoverable format within Fidelis Network and Deception CommandPost. In the event that an attacker gains access to the C… Deception 9.3.3+ Fix from $1,9502021-06-25