CVE-2018-5403: Imperva Securesphere

High severity, CVSS 8.1. EPSS: 2.4% chance of exploitation in the next 30 days.

Imperva SecureSphere gateway (GW) running v13, for both pre-First Time Login or post-First Time Login (FTL), if the attacker knows the basic authentication passwords, the GW may be vulnerable to RCE through specially crafted requests, from the web access management interface.

Affected products

  • Imperva Securesphere: version 13.0.10 only; version 13.1.10 only; version 13.2.10 only

Published 2019-01-10. Last modified 2026-06-17.