Skip to main content

Drupal Remote Code Execution Vulnerability

Last Update Date: 17 Jan 2019 10:02 Release Date: 17 Jan 2019 5139 Views

RISK: Medium Risk

TYPE: Servers - Internet App Servers

TYPE: Internet App Servers

A vulnerability was identified in Drupal, a remote user could exploit this vulnerability to trigger remote code execution on the targeted system.


Impact

  • Remote Code Execution

System / Technologies affected

  • Versions prior to Drupal: 8.6.x
  • Versions prior to Drupal: 8.5.x
  • Versions prior to Drupal: 7.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to Drupal: 8.6.6
  • Update to Drupal: 8.5.9
  • Update to Drupal: 7.62

Vulnerability Identifier


Source


Related Link