VendorsImpervasecuresphere_web_application_firewallall versions
Vulnerabilities

Imperva Securesphere Web Application Firewall

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2011-5266
Imperva SecureSphere Web Application Firewall (WAF) before 12-august-2010 allows SQL injection filter bypass.
Published 2020-01-08 · Modified
9.8EPSS 0.012
CVE-2010-1329
Imperva SecureSphere Web Application Firewall and Database Firewall 5.0.0.5082 through 7.0.0.7078 allow remote attackers to bypass intrusion-prevention functionality via a request that has an appended long string containing an unspecified manipulation.
Published 2010-04-15 · Modified
7.8EPSS 0.014
CVE-2011-4887
Cross-site scripting (XSS) vulnerability in the Violations Table in the management GUI in the MX Management Server in Imperva SecureSphere Web Application Firewall (WAF) 9.0 allows remote attackers to inject arbitrary web script or HTML via the username field.
Published 2014-09-11 · Modified
4.3EPSS 0.013
CVE-2011-0767
Cross-site scripting (XSS) vulnerability in the management GUI in the MX Management Server in Imperva SecureSphere Web Application Firewall 6.2, 7.x, and 8.x allows remote attackers to inject arbitrary web script or HTML via an HTTP request to a firewalled server, aka Bug ID 31759.
Published 2011-06-06 · Modified
4.3EPSS 0.012