Securesphere
Imperva · 11 CVEs
A command injection vulnerability in PWS in Imperva SecureSphere 13.0.0.10 and 13.1.0.10 Gateway allows an attacker wit…
Apr 25, 2019
Imperva SecureSphere running v13.0, v12.0, or v11.5 allows low privileged users to add SSH login keys to the admin user…
Jan 10, 2019
Imperva SecureSphere running v12.0.0.50 is vulnerable to local arbitrary code execution, escaping sealed-mode.
Jan 10, 2019
Imperva SecureSphere gateway (GW) running v13, for both pre-First Time Login or post-First Time Login (FTL), if the att…
Jan 10, 2019
The Python CGI scripts in PWS in Imperva SecureSphere 13.0.10, 13.1.10, and 13.2.10 allow remote attackers to execute a…
Nov 28, 2018
plain/actionsets.html in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 al…
Jun 28, 2013
The Key Management feature in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0…
Jun 28, 2013
The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote attackers to…
Jun 28, 2013
The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows context-dependent at…
Jun 28, 2013
The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 does not have an off autoco…
Jun 28, 2013
Cross-site scripting (XSS) vulnerability in the management GUI in Imperva SecureSphere MX Management Server 5.0 allows…
Mar 24, 2008
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2018-16660 | A command injection vulnerability in PWS in Imperva SecureSphere 13.0.0.10 and 13.1.0.10 Gateway allows an attacker with authenticated access to execute arbitr… | HIGH | 17.42% | Apr 25, 2019 |
| CVE-2018-5413 | Imperva SecureSphere running v13.0, v12.0, or v11.5 allows low privileged users to add SSH login keys to the admin user, resulting in privilege escalation. | HIGH | 1.26% | Jan 10, 2019 |
| CVE-2018-5412 | Imperva SecureSphere running v12.0.0.50 is vulnerable to local arbitrary code execution, escaping sealed-mode. | HIGH | 0.61% | Jan 10, 2019 |
| CVE-2018-5403 | Imperva SecureSphere gateway (GW) running v13, for both pre-First Time Login or post-First Time Login (FTL), if the attacker knows the basic authentication pas… | HIGH | 2.41% | Jan 10, 2019 |
| CVE-2018-19646 | The Python CGI scripts in PWS in Imperva SecureSphere 13.0.10, 13.1.10, and 13.2.10 allow remote attackers to execute arbitrary OS commands because command-lin… | CRITICAL | 3.45% | Nov 28, 2018 |
| CVE-2013-4095 | plain/actionsets.html in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote authenticated users to execu… | MEDIUM | 5.88% | Jun 28, 2013 |
| CVE-2013-4094 | The Key Management feature in the SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote authenticated users to… | MEDIUM | 5.63% | Jun 28, 2013 |
| CVE-2013-4093 | The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows remote attackers to obtain sensitive information via (1) a d… | MEDIUM | 6.88% | Jun 28, 2013 |
| CVE-2013-4092 | The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows context-dependent attackers to obtain sensitive information… | MEDIUM | 4.87% | Jun 28, 2013 |
| CVE-2013-4091 | The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 does not have an off autocomplete attribute for the password (aka j… | HIGH | 5.59% | Jun 28, 2013 |
| CVE-2008-1463 | Cross-site scripting (XSS) vulnerability in the management GUI in Imperva SecureSphere MX Management Server 5.0 allows remote attackers to inject arbitrary web… | MEDIUM | 1.58% | Mar 24, 2008 |
Showing 1 to 11 of 11 CVEs