CVE-2012-1787
Webglimpse < 2.20.0 - Cross-Site Scripting via URL FILE or DOMAIN Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2012-1787. PoCs published by MustLive.
AI-analyzed exploit summary This exploit demonstrates multiple XSS vulnerabilities in Webglimpse by injecting malicious JavaScript via unsanitized URL parameters. The PoC URLs trigger arbitrary script execution in the context of the affected server.
Description
Multiple cross-site scripting (XSS) vulnerabilities in wgarcmin.cgi in Webglimpse 2.20.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) URL, (2) FILE, or (3) DOMAIN parameters.
Exploits (1)
This exploit demonstrates multiple XSS vulnerabilities in Webglimpse by injecting malicious JavaScript via unsanitized URL parameters. The PoC URLs trigger arbitrary script execution in the context of the affected server.