Skip to main content

Drupal Multiple Vulnerabilities

Last Update Date: 19 Oct 2018 09:08 Release Date: 19 Oct 2018 3996 Views

RISK: Medium Risk

TYPE: Servers - Internet App Servers

TYPE: Internet App Servers

Multiple vulnerabilities have been identified in Drupal. A remote user can exploit these vulnerabilities to trigger remote code execution, security restriction bypass and spoofing on the targeted system.


Impact

  • Remote Code Execution
  • Security Restriction Bypass
  • Spoofing

System / Technologies affected

  • Version: 7.x, 8.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • If you are running 7.x, upgrade to Drupal 7.60.
  • If you are running 8.6.x, upgrade to Drupal 8.6.2.
  • If you are running 8.5.x or earlier, upgrade to Drupal 8.5.8.

Vulnerability Identifier

  • No CVE information is available

Source


Related Link