CVE-2010-1329

UnknownEPSS 1.42%

Last modified

CVE-2010-1329 is a vulnerability of currently unknown severity. Imperva SecureSphere Web Application Firewall and Database Firewall 5.0.0.5082 through 7.0.0.7078 allow remote attackers to bypass intrusion-prevention functionality via a request that has an appended long string containing an unspecified manipulation.. EPSS estimates a 1.42% chance of exploitation in the next 30 days.

Description

Imperva SecureSphere Web Application Firewall and Database Firewall 5.0.0.5082 through 7.0.0.7078 allow remote attackers to bypass intrusion-prevention functionality via a request that has an appended long string containing an unspecified manipulation.

Metrics

EPSS Probability
1.42%

69.5th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
ImpervaSecuresphere Web Application Firewall5.0.0.5082
ImpervaSecuresphere Web Application Firewall6.0.5.6230
ImpervaSecuresphere Web Application Firewall6.0.5.6238
ImpervaSecuresphere Web Application Firewall6.0.6.6274
ImpervaSecuresphere Web Application Firewall6.0.6.6302
ImpervaSecuresphere Web Application Firewall6.2.0.6442
ImpervaSecuresphere Web Application Firewall6.2.0.6463
ImpervaSecuresphere Web Application Firewall7.0.0.7061
ImpervaSecuresphere Database Firewall5.0.0.5082
ImpervaSecuresphere Database Firewall6.0.5.6230
ImpervaSecuresphere Database Firewall6.0.5.6238
ImpervaSecuresphere Database Firewall6.0.6.6274
ImpervaSecuresphere Database Firewall6.0.6.6302
ImpervaSecuresphere Database Firewall6.2.0.6442
ImpervaSecuresphere Database Firewall6.2.0.6463
ImpervaSecuresphere Database Firewall7.0.0.7061
ImpervaSecuresphere Database Firewall6.0.4.6128
ImpervaSecuresphere Web Application Firewall6.0.4.6128
ImpervaSecuresphere Database Firewall7.0.0.7078
ImpervaSecuresphere Web Application Firewall7.0.0.7078

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2010-1329?
Imperva SecureSphere Web Application Firewall and Database Firewall 5.0.0.5082 through 7.0.0.7078 allow remote attackers to bypass intrusion-prevention functionality via a request that has an appended long string containing an unspecified manipulation.
How severe is CVE-2010-1329?
Severity scoring for CVE-2010-1329 is pending analysis. The EPSS model estimates a 1.42% probability of exploitation in the next 30 days.
How do I fix CVE-2010-1329?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2010-1329?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST