Drupal core – Highly critical – Remote Code Execution
Description: A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and 8.x. This potentially allows attackers to exploit multiple attack vectors on a Drupal site, which could result in the site being completely compromised.
Impact: A remote attacker could exploit this vulnerability to take control of an affected system.
Mitigation:
- If you are running 7.x, upgrade to Drupal 7.58.
- If you are running 8.5.x, upgrade to Drupal 8.5.1.
Please see the references or vendor advisory for more information.
Reference URL’s:
Recommended Posts
Enhancing Situational Awareness on Emerging Cyber Threats
09 Sep 2023 - English articles, News, Security Advisories & Alerts, Uncategorized

UPDATE ON SITUATIONAL ALERT
08 Aug 2023 - Articles, News, Security Advisories & Alerts, Uncategorized