Skip to main content

Drupal Multiple Vulnerabilities

Last Update Date: 18 Nov 2016 10:41 Release Date: 18 Nov 2016 2998 Views

RISK: Medium Risk

TYPE: Servers - Web Servers

TYPE: Web Servers

 Multiple vulnerabilities were identified in Drupal. A remote user could cause denial of service, redirect user to external URL and posion cache content.


Impact

  • Denial of Service
  • Information Disclosure
  • Data Manipulation

System / Technologies affected

  • Drupal core 7.x versions prior to 7.52
  • Drupal core 8.x versions prior to 8.2.3

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to Drupal core 7.52
  • Update to Drupal core 8.2.3

Vulnerability Identifier

  • No CVE information is available

Source


Related Link