Описание
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an issue affecting multiple subsystems with default or common module configurations.
Ссылки
- Third Party AdvisoryVDB EntryBroken Link
- Third Party AdvisoryVDB EntryBroken Link
- Third Party AdvisoryBroken Link
- Third Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- Issue TrackingThird Party AdvisoryBroken Link
- Vendor Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- Third Party AdvisoryBroken Link
- Third Party AdvisoryBroken Link
- Third Party AdvisoryBroken Link
- Third Party Advisory
- Vendor Advisory
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 7.57 (включая)Версия от 8.0.0 (включая) до 8.3.9 (исключая)Версия от 8.4.0 (включая) до 8.4.6 (исключая)Версия от 8.5.0 (включая) до 8.5.1 (исключая)
Одно из
cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*
cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*
cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*
cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
EPSS
Процентиль: 100%
0.94489
Критический
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-20
CWE-20
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 7 лет назад
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an issue affecting multiple subsystems with default or common module configurations.
CVSS3: 9.8
debian
около 7 лет назад
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x be ...
CVSS3: 9.8
fstec
около 7 лет назад
Уязвимость ядра CMS-системы Drupal, позволяющая нарушителю выполнить произвольный код и перехватить контроль над сайтом
EPSS
Процентиль: 100%
0.94489
Критический
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-20
CWE-20