Looking for the vulnerability index of Invicti's legacy products?
WordPress Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) Vulnerability - CVE-2008-4796 - Vulnerability Database

WordPress Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) Vulnerability - CVE-2008-4796

Critical
Reference: CVE-2008-4796
Title: WordPress Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) Vulnerability
Overview:

The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier as used in (1) ampache (2) libphp-snoopy (3) mahara (4) mediamate (5) opendb (6) pixelpost and possibly other products allows remote attackers to execute arbitrary commands via shell metacharacters in https URLs.