← Back

CVE-2018-5403

nvd nist
Published: Jan 10, 2019Modified: Nov 21, 2024

JSON object

Loading...
8.1
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.2 / Impact: 5.9
Source: NVD

Description

Imperva SecureSphere gateway (GW) running v13, for both pre-First Time Login or post-First Time Login (FTL), if the attacker knows the basic authentication passwords, the GW may be vulnerable to RCE through specially crafted requests, from the web access management interface.

Affected (3)

1 product
Securesphere
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Imperva
Version 13.0.10
Version 13.1.10
Version 13.2.10

References (2)

Source: cret@cert.org
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry

Timeline

No history available yet.