Sploitus

Exploit for Improper Input Validation in Drupal

githubexploit · 2018-10-23

Exploit Code

README12 lines
## https://sploitus.com/exploit?id=71923ACF-A3B9-587D-A97C-1414D26EF535
# POC of CVE-2018-7600
Drupal RCE CVE-2018-7600
##### Dont Forget to Put Your Adress into the Script ! 
### Description: 
A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and 8.x. This potentially allows attackers to exploit multiple attack vectors on a Drupal site, which could result in the site being completely compromised.

### Solution: 
Upgrade to the most recent version of Drupal 7 or 8 core.

If you are running 7.x, upgrade to Drupal 7.58. (If you are unable to update immediately, you can attempt to apply this patch to fix the vulnerability until such time as you are able to completely update.)
If you are running 8.5.x, upgrade to Drupal 8.5.1. (If you are unable to update immediately, you can attempt to apply this patch to fix the vulnerability until such time as you are able to completely update.)