A command injection vulnerability in PWS in Imperva SecureSphere 13.0.0.10 and 13.1.0.10 Gateway allows an attacker with authenticated access to execute arbitrary OS commands on a vulnerable installation.
References
Link Resource
https://www.exploit-db.com/exploits/45542/ Exploit Third Party Advisory VDB Entry
https://www.imperva.com/products/securesphere/web-application-firewall/ Product Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-04-25T19:40:40

Updated: 2019-04-25T19:40:40

Reserved: 2018-09-07T00:00:00


Link: CVE-2018-16660

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-04-25T20:29:01.990

Modified: 2019-04-29T13:22:00.387


Link: CVE-2018-16660

JSON object: View

cve-icon Redhat Information

No data.

CWE