CVE-2018-7600
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an...
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- March 01, 2018
- Published Date
- March 29, 2018
- Last Updated
- February 07, 2025
- Vendor
- n/a
- Product
- Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1
- Description
- Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an issue affecting multiple subsystems with default or common module configurations.
CVSS Scores
SSVC Information
- Exploitation
- active
- Automatable
- Yes
- Technical Impact
- total
References
Known Exploited Vulnerability Information
Source | Added Date |
---|---|
CISA | 2021-11-03 00:00:00 UTC |
Scanner Integrations
Scanner | URL | Date Detected |
---|---|---|
Metasploit | https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/unix/webapp/drupal_drupalgeddon2.rb | 2025-04-29 11:01:27 UTC |
Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2018/CVE-2018-7600.yaml | 2025-04-26 00:00:00 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
drupal_drupalgeddon2
Type: metasploit • Created: Unknown
user20252228/CVE-2018-7600.
Type: github • Created: 2025-03-19 05:28:51 UTC • Stars: 0
raytran54/CVE-2018-7600
Type: github • Created: 2024-06-12 06:40:17 UTC • Stars: 0
killeveee/CVE-2018-7600
Type: github • Created: 2024-02-01 05:30:19 UTC • Stars: 1
r0lh/CVE-2018-7600
Type: github • Created: 2022-12-17 11:11:47 UTC • Stars: 0
anldori/CVE-2018-7600
Type: github • Created: 2022-04-25 08:46:00 UTC • Stars: 0
vphnguyen/ANM_CVE-2018-7600
Type: github • Created: 2021-11-26 03:25:50 UTC • Stars: 0
rafaelcaria/drupalgeddon2-CVE-2018-7600
Type: github • Created: 2021-10-27 03:09:48 UTC • Stars: 0
0xAJ2K/CVE-2018-7600
Type: github • Created: 2021-06-05 09:49:56 UTC • Stars: 1
rabbitmask/CVE-2018-7600-Drupal7
Type: github • Created: 2020-04-12 07:37:14 UTC • Stars: 8
zhzyker/CVE-2018-7600-Drupal-POC-EXP
Type: github • Created: 2020-04-07 06:54:13 UTC • Stars: 7
r3dxpl0it/CVE-2018-7600
Type: github • Created: 2018-10-23 21:47:59 UTC • Stars: 8
shellord/CVE-2018-7600-Drupal-RCE
Type: github • Created: 2018-10-02 04:25:02 UTC • Stars: 4
happynote3966/CVE-2018-7600
Type: github • Created: 2018-07-12 01:12:44 UTC • Stars: 0
pimps/CVE-2018-7600
Type: github • Created: 2018-04-17 15:38:15 UTC • Stars: 133
firefart/CVE-2018-7600
Type: github • Created: 2018-04-16 20:16:21 UTC • Stars: 71
sl4cky/CVE-2018-7600-Masschecker
Type: github • Created: 2018-04-15 14:56:35 UTC • Stars: 3
sl4cky/CVE-2018-7600
Type: github • Created: 2018-04-15 12:01:41 UTC • Stars: 4
thehappydinoa/CVE-2018-7600
Type: github • Created: 2018-04-15 02:21:59 UTC • Stars: 7
dwisiswant0/CVE-2018-7600
Type: github • Created: 2018-04-14 18:26:26 UTC • Stars: 4
dr-iman/CVE-2018-7600-Drupal-0day-RCE
Type: github • Created: 2018-04-14 09:02:54 UTC • Stars: 8
knqyf263/CVE-2018-7600
Type: github • Created: 2018-04-13 10:04:36 UTC • Stars: 3
a2u/CVE-2018-7600
Type: github • Created: 2018-03-30 14:23:18 UTC • Stars: 351
g0rx/CVE-2018-7600-Drupal-RCE
Type: github • Created: 2018-03-30 08:52:54 UTC • Stars: 116