Vulnerabilities > Exhibitor Project > Exhibitor > 1.0.9

DATE CVE VULNERABILITY TITLE RISK
2019-11-13 CVE-2019-5029 OS Command Injection vulnerability in Exhibitor Project Exhibitor
An exploitable command injection vulnerability exists in the Config editor of the Exhibitor Web UI versions 1.0.9 to 1.7.1.
network
low complexity
exhibitor-project CWE-78
critical
10.0