Imperva SecureSphere running v13.0, v12.0, or v11.5 allows low privileged users to add SSH login keys to the admin user, resulting in privilege escalation.
The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Securesphere | Imperva | 11.5 (including) | 11.5 (including) |
Securesphere | Imperva | 12.0 (including) | 12.0 (including) |
Securesphere | Imperva | 13.0 (including) | 13.0 (including) |