ZeroHour

CVE-2018-5403

PoC
CVSS 3.0
8.1 high
EPSS
2%p83
Published
()
Modified
Description

Imperva SecureSphere gateway (GW) running v13, for both pre-First Time Login or post-First Time Login (FTL), if the attacker knows the basic authentication passwords, the GW may be vulnerable to RCE through specially crafted requests, from the web access management interface.

Vendors
imperva
Products
securesphere
Weakness
CWE-77, CWE-287
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.