Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an issue affecting multiple subsystems with default or common module configurations.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2018-03-29 00:29
Updated : 2019-03-01 10:04
NVD link : CVE-2018-7600
Mitre link : CVE-2018-7600
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
debian
- debian_linux
drupal
- drupal