nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-5403 CVE-2018-5403
HIGH
Imperva SecureSphere 13 - Remote Command Execution
Record summary
CVE-2018-5403 has a selected CVSS score of 8.1 (high); EIP currently links 1 catalogued exploit.
Description
Imperva SecureSphere gateway (GW) running v13, for both pre-First Time Login or post-First Time Login (FTL), if the attacker knows the basic authentication passwords, the GW may be vulnerable to RCE through specially crafted requests, from the web access management interface.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
SecureSphereBrowse Imperva / SecureSphere | CVE List | 13.0 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBImperva SecureSphere 13 - Remote Command ExecutionExploitDB exploitby rsp3arNot analyzed1 file
References
245542exploit
https://www.exploit-db.com/exploits/45542