Security Advisory

CVE-2020-9406

9.8
CRITICAL

Vulnerability Description

IBL Online Weather before 4.3.5a allows unauthenticated eval injection via the queryBCP method of the Auxiliary Service.
Published Date February 26, 2020
Official Source NIST NVD Advisory