Imperva SecureSphere Web Application Firewall (WAF) before 12-august-2010 allows SQL injection filter bypass.
Imperva SecureSphere Web
Exploit
CVE-2011-5266
NVD
Refer to CVE-2011-5266 NVD advisory