PatchSiren

Fidelex CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Fidelex CVE published 2017-02-13

CVE-2016-9364

CVE-2016-9364 affects Fidelix FX-20 series controllers and is described as an arbitrary file reading issue caused by path traversal. The CVSS 3.0 vector in NVD indicates network access, no privileges, no user interaction, and high confidentiality impact. In practical defensive terms, this means an exposed controller service could allow an attacker to read files and directories they should not be able to a [truncated]