Drupal.BlogAPI.Code.Execution

description-logoDescription

This indicates an attack attempt against a code execution vulnerability in Drupal software.
The vulnerability is due to improper validation of user input from certain content fields. It allows a remote attacker to execute arbitrary code via sending a crafted web request.

affected-products-logoAffected Products

Drupal 5.x before 5.11 and 6.x before 6.5

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Update to version 5.11 or 6.5.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)