vendor:
Drupal
by:
Vitalii Rudnykh, Hans Topo, José Ignacio Rojo
9.8
CVSS
CRITICAL
CVE-2018-7600 / SA-CORE-2018-002
Unknown
CWE
Product Name: Drupal
Affected Version From: 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1
Affected Version To: Unknown
Patch Exists: Unknown
Related CWE: CVE-2018-7600
CPE: Unknown
Tags: cve,cve2018,drupal,rce,kev,vulhub,intrusive
CVSS Metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Nuclei Metadata: {'max-request': 1, 'shodan-query': 'http.component:"drupal"', 'vendor': 'drupal', 'product': 'drupal'}
Platforms Tested: php
Unknown
Drupalgeddon2
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an issue affecting multiple subsystems with default or common module configurations. The module can load msf PHP arch payloads, using the php/base64 encoder. The resulting RCE on Drupal looks like this: php -r 'eval(base64_decode(#{PAYLOAD}));'
Mitigation:
Unknown