VYPR

Network and Deception

by Fidelis Cybersecurity

CVEs (3)

  • CVE-2021-35047CriJun 25, 2021
    risk 0.64cvss 9.9epss 0.02

    Vulnerability in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables an attacker with user level access to the CLI to inject root level commands into the component and neighboring Fidelis components. The vulnerability is present in Fidelis…

  • CVE-2022-0486MedMay 17, 2022
    risk 0.29cvss 4.4epss 0.00

    Improper file permissions in the CommandPost, Collector, Sensor, and Sandbox components of Fidelis Network and Deception enables an attacker with local, administrative access to the CLI to modify affected files and enable escalation of privileges equivalent to the root user. The…

  • CVE-2022-0997LowMay 17, 2022
    risk 0.25cvss 3.9epss 0.01

    Improper file permissions in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables an attacker with local, administrative access to the CLI to modify affected script files, which could result in arbitrary commands being run as root upon…