cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2011-3140,https://securityvulnerability.io/vulnerability/CVE-2011-3140,,"IBM Web Application Firewall, as used on the G400 IPS-G400-IB-1 and GX4004 IPS-GX4004-IB-2 appliances with update 31.030, does not properly handle query strings with multiple instances of the same parameter, which allows remote attackers to bypass intended intrusion prevention by dividing a dangerous parameter value into substrings, as demonstrated by a SQL statement that is split across multiple iid parameters and then sent to a .aspx file on an IIS web server.",IBM,"Web Application Firewall,G400 Ips-g400-ib-1 Appliance,Gx4004 Ips-gx4004-ib-2 Appliance",,,0.011730000376701355,false,,false,false,false,,,false,false,,2011-08-15T21:00:00.000Z,0