VYPR
Unrated severityNVD Advisory· Published May 17, 2022· Updated Sep 16, 2024

Authenticated SQL Injection Vulnerability in Fidelis Network and Deception

CVE-2022-24391

Description

Vulnerability in Fidelis Network and Deception CommandPost enables SQL injection through the web interface by an attacker with user level access. The vulnerability is present in Fidelis Network and Deception versions prior to 9.4.5. Patches and updates are available to address this vulnerability.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.