fidelissecurity records
13 published records for vendor fidelissecurity.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 7.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')7
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-276 Incorrect Default Permissions2
- CWE-257 Storing Passwords in a Recoverable Format1
The weakness classes this vendor ships most often: where to look.
CWEAll records
13 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2021-35048No exploit | Unauthenticated SQL Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-89 | Critical9.8 | — | 1.3% | Jun 25, 2021 |
36Monitor | CVE-2021-35049No exploit | Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-89 | High8.8 | — | 4.6% | Jun 25, 2021 |
36Monitor | CVE-2022-24392No exploit | Authenticated Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-78 | High8.8 | — | 2.7% | May 17, 2022 |
36Monitor | CVE-2022-24393No exploit | Authenticated Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-78 | High8.8 | — | 2.7% | May 17, 2022 |
36Monitor | CVE-2022-24394No exploit | Authenticated Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-78 | High8.8 | — | 2.6% | May 17, 2022 |
35Monitor | CVE-2021-35047No exploit | Privileged Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-78 | High8.8 | — | 1.6% | Jun 25, 2021 |
35Monitor | CVE-2022-24388No exploit | Authenticated Privileged Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-78 | High8.8 | — | 1.5% | May 17, 2022 |
35Monitor | CVE-2022-24389No exploit | Authenticated Privileged Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-78 | High8.8 | — | 1.5% | May 17, 2022 |
35Monitor | CVE-2022-24390No exploit | Authenticated Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-78 | High8.8 | — | 1.3% | May 17, 2022 |
35Monitor | CVE-2022-24391No exploit | Authenticated SQL Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-89 | High8.8 | — | 1.0% | May 17, 2022 |
31Monitor | CVE-2022-0997Proof of concept | Local Privilege Escalation Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-276 | High7.8 | — | 0.5% | May 17, 2022 |
31Monitor | CVE-2022-0486Proof of concept | Privileged Command Injection Vulnerability in Fidelis Network and Deceptionfidelissecurity · deception · CWE-276 | High7.8 | — | 0.4% | May 17, 2022 |
30Monitor | CVE-2021-35050No exploit | User Credentials Stored in a Recoverable Format within Fidelis Network and Deceptionfidelissecurity · deception · CWE-257 | High7.5 | — | 1.0% | Jun 25, 2021 |
- CVE-2021-3504839Monitor
Unauthenticated SQL Injection Vulnerability in Fidelis Network and Deception
CriticalCVSS 9.8No exploitEPSS 1%fidelissecurity · deceptionJun 25, 2021
- CVE-2021-3504936Monitor
Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 5%fidelissecurity · deceptionJun 25, 2021
- CVE-2022-2439236Monitor
Authenticated Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 3%fidelissecurity · deceptionMay 17, 2022
- CVE-2022-2439336Monitor
Authenticated Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 3%fidelissecurity · deceptionMay 17, 2022
- CVE-2022-2439436Monitor
Authenticated Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 3%fidelissecurity · deceptionMay 17, 2022
- CVE-2021-3504735Monitor
Privileged Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 2%fidelissecurity · deceptionJun 25, 2021
- CVE-2022-2438835Monitor
Authenticated Privileged Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 2%fidelissecurity · deceptionMay 17, 2022
- CVE-2022-2438935Monitor
Authenticated Privileged Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 2%fidelissecurity · deceptionMay 17, 2022
- CVE-2022-2439035Monitor
Authenticated Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 1%fidelissecurity · deceptionMay 17, 2022
- CVE-2022-2439135Monitor
Authenticated SQL Injection Vulnerability in Fidelis Network and Deception
HighCVSS 8.8No exploitEPSS 1%fidelissecurity · deceptionMay 17, 2022
- CVE-2022-099731Monitor
Local Privilege Escalation Vulnerability in Fidelis Network and Deception
HighCVSS 7.8Proof of conceptEPSS 1%fidelissecurity · deceptionMay 17, 2022
- CVE-2022-048631Monitor
Privileged Command Injection Vulnerability in Fidelis Network and Deception
HighCVSS 7.8Proof of conceptEPSS 0%fidelissecurity · deceptionMay 17, 2022
- CVE-2021-3505030Monitor
User Credentials Stored in a Recoverable Format within Fidelis Network and Deception
HighCVSS 7.5No exploitEPSS 1%fidelissecurity · deceptionJun 25, 2021