Vulnerabilities > Nibbleblog > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-02-11 CVE-2019-7719 Code Injection vulnerability in Nibbleblog 4.0.5
Nibbleblog 4.0.5 allows eval injection by placing PHP code in the install.php username parameter and then making a content/private/shadow.php request.
network
low complexity
nibbleblog CWE-94
critical
9.8