CVE-2009-5114

UnknownEPSS 13.65%

Last modified

CVE-2009-5114 is a vulnerability of currently unknown severity. Directory traversal vulnerability in wgarcmin.cgi in WebGlimpse 2.18.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the DOC parameter.. EPSS estimates a 13.65% chance of exploitation in the next 30 days.

Description

Directory traversal vulnerability in wgarcmin.cgi in WebGlimpse 2.18.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the DOC parameter.

Metrics

EPSS Probability
13.65%

96.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
IworkWebglimpse<= 2.18.7
IworkWebglimpse1.7.6
IworkWebglimpse1.7.9
IworkWebglimpse2.0.03
IworkWebglimpse2.0.04
IworkWebglimpse2.0.07
IworkWebglimpse2.0.10
IworkWebglimpse2.1.01
IworkWebglimpse2.1.04
IworkWebglimpse2.2.0
IworkWebglimpse2.2.2
IworkWebglimpse2.3.1
IworkWebglimpse2.4.3
IworkWebglimpse2.4.6
IworkWebglimpse2.5.1
IworkWebglimpse2.5.4
IworkWebglimpse2.6.7
IworkWebglimpse2.7.4
IworkWebglimpse2.7.6
IworkWebglimpse2.7.7
IworkWebglimpse2.8.0
IworkWebglimpse2.8.1
IworkWebglimpse2.10.2
IworkWebglimpse2.10.4
IworkWebglimpse2.10.5
IworkWebglimpse2.11.0
IworkWebglimpse2.12.0
IworkWebglimpse2.12.1
IworkWebglimpse2.12.2
IworkWebglimpse2.12.3
IworkWebglimpse2.13.0
IworkWebglimpse2.13.1
IworkWebglimpse2.13.2
IworkWebglimpse2.14.0
IworkWebglimpse2.14.1
IworkWebglimpse2.14.3
IworkWebglimpse2.14.6
IworkWebglimpse2.14.8
IworkWebglimpse2.15.2
IworkWebglimpse2.15.3
IworkWebglimpse2.16.1
IworkWebglimpse2.17.0
IworkWebglimpse2.17.2
IworkWebglimpse2.18.0
IworkWebglimpse2.18.2
IworkWebglimpse2.18.3
IworkWebglimpse2.18.4
IworkWebglimpse2.18.5

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2009-5114?
Directory traversal vulnerability in wgarcmin.cgi in WebGlimpse 2.18.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the DOC parameter.
How severe is CVE-2009-5114?
Severity scoring for CVE-2009-5114 is pending analysis. The EPSS model estimates a 13.65% probability of exploitation in the next 30 days.
How do I fix CVE-2009-5114?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2009-5114?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST