Drupal 7.x 및 8.x의 여러 하위 시스템에 원격 코드 실행 취약점이 존재합니다. 이로 인해 공격자가 Drupal 사이트에서 여러 공격 벡터를 악용할 수 있으며, 그 결과 사이트가 침해될 수 있습니다. 이 취약점은 Drupal core - Highly critical - Remote Code Execution - SA-CORE-2018-002와 관련이 있습니다. SA-CORE-2018-002와 이 취약점은 모두 실제 환경에서 악용되고 있습니다.
Drupal 7.x 및 8.x의 여러 하위 시스템에 원격 코드 실행 취약점이 존재합니다. 이로 인해 공격자가 Drupal 사이트에서 여러 공격 벡터를 악용할 수 있으며, 그 결과 사이트가 침해될 수 있습니다. 이 취약점은 Drupal core - Highly critical - Remote Code Execution - SA-CORE-2018-002와 관련이 있습니다. SA-CORE-2018-002와 이 취약점은 모두 실제 환경에서 악용되고 있습니다.
한국어 설명은 영문 원문을 기준으로 제공됩니다. 제품명·버전·보안 식별자는 아래 원문과 함께 확인할 수 있습니다.
영문 원문 보기
A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and 8.x. This potentially allows attackers to exploit multiple attack vectors on a Drupal site, which could result in the site being compromised. This vulnerability is related to Drupal core - Highly critical - Remote Code Execution - SA-CORE-2018-002. Both SA-CORE-2018-002 and this vulnerability are being exploited in the wild.