CVE-2012-1795: Webglimpse

High severity, CVSS 7.5. EPSS: 4.2% chance of exploitation in the next 30 days.

webglimpse.cgi in Webglimpse before 2.20.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter, as exploited in the wild in March 2012.

Affected products

  • Webglimpse Webglimpse: up to and including 2.18.8; version 2.2.0 only; version 2.2.1 only; version 2.2.2 only; version 2.3.1 only; version 2.3.3 only; …

Published 2012-03-20. Last modified 2026-06-16.