📦 Deception

by Fidelissecurity

🔍 What is Deception?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-24388

HIGH CVSS 8.8 May 17, 2022

This vulnerability allows an attacker with user-level CLI access to inject root-level commands via the rconfig 'date' parameter in Fidelis Network and Deception components. It affects CommandPost, Col...

CVE-2022-24390

HIGH CVSS 8.8 May 17, 2022

This vulnerability allows authenticated attackers with CLI user-level access to execute arbitrary commands on Fidelis Network and Deception components. It affects CommandPost, Collector, Sensor, and S...

CVE-2022-24392

HIGH CVSS 8.8 May 17, 2022

This vulnerability allows authenticated attackers to execute arbitrary system commands on Fidelis Network and Deception CommandPost through command injection in the web interface. Attackers can inject...

CVE-2022-24394

HIGH CVSS 8.8 May 17, 2022

This vulnerability allows authenticated attackers to execute arbitrary system commands on Fidelis Network and Deception CommandPost servers through command injection in the web interface. Attackers ca...