Drupal Multiple Vulnerabilities
Last Update Date:
19 Oct 2018 09:08
Release Date:
19 Oct 2018
4905
Views
RISK: Medium Risk
TYPE: Servers - Internet App Servers
Multiple vulnerabilities have been identified in Drupal. A remote user can exploit these vulnerabilities to trigger remote code execution, security restriction bypass and spoofing on the targeted system.
Impact
- Remote Code Execution
- Security Restriction Bypass
- Spoofing
System / Technologies affected
- Version: 7.x, 8.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- If you are running 7.x, upgrade to Drupal 7.60.
- If you are running 8.6.x, upgrade to Drupal 8.6.2.
- If you are running 8.5.x or earlier, upgrade to Drupal 8.5.8.
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with