1. Symantec/
  2. Security Response/
  3. Attack Signatures/
  4. Web Attack: Drupal Core RCE CVE-2018-7602

Web Attack: Drupal Core RCE CVE-2018-7602

Severity: High

This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.

Description

This signature detects attempts to exploit a remote code execution vulnerability in Drupal Core.

Additional Information

Drupal is a PHP-based content manager.

Drupal is prone to a remote code-execution vulnerability.

Little is known about this issue at this time. We will update this BID as more information emerges.

An attacker can exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts may result in a denial-of-service condition.

Affected

  • Drupal Drupal 8.5.2
  • Drupal Drupal 8.5.1
  • Drupal Drupal 8.5
  • Drupal Drupal 8.4.7
  • Drupal Drupal 8.4.6
  • Drupal Drupal 8.4.5
  • Drupal Drupal 8.4.4
  • Drupal Drupal 8.4.3
  • Drupal Drupal 8.4.2
  • Drupal Drupal 8.4.1
  • Drupal Drupal 8.4
  • Drupal Drupal 7.9
  • Drupal Drupal 7.8
  • Drupal Drupal 7.6
  • Drupal Drupal 7.58
  • Drupal Drupal 7.57
  • Drupal Drupal 7.56
  • Drupal Drupal 7.55
  • Drupal Drupal 7.54
  • Drupal Drupal 7.52
  • Drupal Drupal 7.5
  • Drupal Drupal 7.44
  • Drupal Drupal 7.43
  • Drupal Drupal 7.42
  • Drupal Drupal 7.41
  • Drupal Drupal 7.40
  • Drupal Drupal 7.4
  • Drupal Drupal 7.39
  • Drupal Drupal 7.38
  • Drupal Drupal 7.37
  • Drupal Drupal 7.36
  • Drupal Drupal 7.35
  • Drupal Drupal 7.34
  • Drupal Drupal 7.33
  • Drupal Drupal 7.32
  • Drupal Drupal 7.31
  • Drupal Drupal 7.30
  • Drupal Drupal 7.3
  • Drupal Drupal 7.29
  • Drupal Drupal 7.28
  • Drupal Drupal 7.27
  • Drupal Drupal 7.26
  • Drupal Drupal 7.25
  • Drupal Drupal 7.24
  • Drupal Drupal 7.23
  • Drupal Drupal 7.22
  • Drupal Drupal 7.21
  • Drupal Drupal 7.20
  • Drupal Drupal 7.2
  • Drupal Drupal 7.19
  • Drupal Drupal 7.18
  • Drupal Drupal 7.17
  • Drupal Drupal 7.16
  • Drupal Drupal 7.15
  • Drupal Drupal 7.14
  • Drupal Drupal 7.13
  • Drupal Drupal 7.12
  • Drupal Drupal 7.11
  • Drupal Drupal 7.10
  • Drupal Drupal 7.1
  • Twitter
  • Facebook
  • LinkedIn
  • Google+
  • YouTube