CVE-2014-3927by Jeremyin Security Bulletinson Posted on April 3, 2017 mrlg-lib.php in mrlg4php before 1.0.8 allows remote attackers to execute arbitrary shell code.