CVE-2018-7600
9.8
CVSS
EPSS94.5%(100th)
CISA KEVPublic ExploitExploited in WildRansomware UseCISA Required Action: Apply updates per vendor instructions.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9
Affected Packages4 packages
Also affects: Debian Linux 7.0, 8.0, 9.0
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an issue affecting multiple subsystems with default or common module configurations.
🔴Vulnerability Details
7💥Exploits & PoCs
4Exploit-DB
▶
Exploit-DB
▶
Exploit-DB
▶
Nuclei▶
Drupal - Remote Code Execution
🔍Detection Rules
3Suricata▶
ET WEB_SPECIFIC_APPS [eSentire] Drupalgeddon2 <8.3.9 <8.4.6 <8.5.1 RCE Through Registration Form (CVE-2018-7600)↗2018-07-10
Suricata▶
ET WEB_SPECIFIC_APPS Drupalgeddon2 <8.3.9 <8.4.6 <8.5.1 RCE Through Registration Form (CVE-2018-7600)↗2018-04-26
Suricata▶
ET WEB_SPECIFIC_APPS [PT OPEN] Drupalgeddon2 <8.3.9 <8.4.6 <8.5.1 RCE Through Registration Form (CVE-2018-7600)↗2018-04-13
📋Vendor Advisories
4🕵️Threat Intelligence
6Tenable▶
Drupalgeddon Attacks Continue on Sites Missing Security Updates (CVE-2018-7600, CVE-2018-7602)↗2018-11-20