İçeriğe atla
Noroxi

Imperva kayıtları

imperva üreticisine ait 17 yayımlanmış kayıt.

Bug bounty kapsamı

Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.

Tüm kayıtlar

17 kayıt
  • CVE-2018-16660
    40Planlayın

    A command injection vulnerability in PWS in Imperva SecureSphere 13.0.0.10 and 13.1.0.10 Gateway allows an attacker with authenticated acces

    YüksekCVSS 8,8SilahlaştırılmışEPSS %17

    imperva · securesphere25 Nis 2019

  • CVE-2021-45468
    40Planlayın

    Imperva Web Application Firewall (WAF) before 2021-12-23 allows remote unauthenticated attackers to use "Content-Encoding: gzip" to evade WA

    KritikCVSS 9,8Kavram kanıtıEPSS %4

    imperva · web application firewall14 Oca 2022

  • CVE-2018-19646
    40Planlayın

    The Python CGI scripts in PWS in Imperva SecureSphere 13.0.10, 13.1.10, and 13.2.10 allow remote attackers to execute arbitrary OS commands

    KritikCVSS 9,8İstismar yokEPSS %3

    imperva · securesphere28 Kas 2018

  • CVE-2011-5266
    39İzleyin

    Imperva SecureSphere Web Application Firewall (WAF) before 12-august-2010 allows SQL injection filter bypass.

    KritikCVSS 9,8İstismar yokEPSS %1

    imperva · securesphere web application firewall8 Oca 2020

  • CVE-2023-50969
    39İzleyin

    Thales Imperva SecureSphere WAF 14.7.0.40 allows remote attackers to bypass WAF rules via a crafted POST request, a different vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    28 Mar 2024

  • CVE-2018-5413
    35İzleyin

    Imperva SecureSphere running v13.0, v12.0, or v11.5 allows low privileged users to add SSH login keys to the admin user, resulting in privil

    YüksekCVSS 8,8İstismar yokEPSS %1

    imperva · securesphere10 Oca 2019

  • CVE-2018-5403
    33İzleyin

    Imperva SecureSphere gateway (GW) running v13, for both pre-First Time Login or post-First Time Login (FTL), if the attacker knows the basic

    YüksekCVSS 8,1İstismar yokEPSS %2

    imperva · securesphere10 Oca 2019

  • CVE-2013-4091
    32İzleyin

    The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 does not have an off autocomplete attribute for

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    imperva · securesphere28 Haz 2013

  • CVE-2010-1329
    31İzleyin

    Imperva SecureSphere Web Application Firewall and Database Firewall 5.0.0.5082 through 7.0.0.7078 allow remote attackers to bypass intrusion

    YüksekCVSS 7,8İstismar yokEPSS %1

    imperva · securesphere web application firewall15 Nis 2010

  • CVE-2018-5412
    31İzleyin

    Imperva SecureSphere running v12.0.0.50 is vulnerable to local arbitrary code execution, escaping sealed-mode.

    YüksekCVSS 7,8İstismar yokEPSS %1

    imperva · securesphere10 Oca 2019

  • CVE-2013-4095
    28İzleyin

    plain/actionsets.html in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote authentic

    OrtaCVSS 6,5Kavram kanıtıEPSS %6

    imperva · securesphere28 Haz 2013

  • CVE-2013-4094
    28İzleyin

    The Key Management feature in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote auth

    OrtaCVSS 6,5Kavram kanıtıEPSS %6

    imperva · securesphere28 Haz 2013

  • CVE-2013-4093
    22İzleyin

    The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote attackers to obtain sensitive info

    OrtaCVSS 5,0Kavram kanıtıEPSS %7

    imperva · securesphere28 Haz 2013

  • CVE-2013-4092
    21İzleyin

    The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows context-dependent attackers to obtain sen

    OrtaCVSS 5,0Kavram kanıtıEPSS %5

    imperva · securesphere28 Haz 2013

  • CVE-2008-1463
    17İzleyin

    Cross-site scripting (XSS) vulnerability in the management GUI in Imperva SecureSphere MX Management Server 5.0 allows remote attackers to i

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    imperva · securesphere24 Mar 2008

  • CVE-2011-4887
    17İzleyin

    Cross-site scripting (XSS) vulnerability in the Violations Table in the management GUI in the MX Management Server in Imperva SecureSphere W

    OrtaCVSS 4,3İstismar yokEPSS %1

    imperva · securesphere web application firewall11 Eyl 2014

  • CVE-2011-0767
    17İzleyin

    Cross-site scripting (XSS) vulnerability in the management GUI in the MX Management Server in Imperva SecureSphere Web Application Firewall

    OrtaCVSS 4,3İstismar yokEPSS %1

    imperva · securesphere web application firewall6 Haz 2011