Vulnerabilities > Webglimpse

DATE CVE VULNERABILITY TITLE RISK
2012-03-20 CVE-2012-1795 OS Command Injection vulnerability in Webglimpse
webglimpse.cgi in Webglimpse before 2.20.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter, as exploited in the wild in March 2012.
network
low complexity
webglimpse CWE-78
7.5
2012-03-19 CVE-2012-1787 Cross-Site Scripting vulnerability in Webglimpse
Multiple cross-site scripting (XSS) vulnerabilities in wgarcmin.cgi in Webglimpse 2.20.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) URL, (2) FILE, or (3) DOMAIN parameters.
network
webglimpse CWE-79
4.3