• Home
  • Services
  • Portfolio
  • Sitemap
  • Contact
WEBLARTECH LTD
(+237) 679569045 / (+237) 655857297
  • twitter
  • facebook
  • support
  • mail
  • Home
  • Services
  • Portfolio
    • Gallery
  • FAQS
    • Blog
      • Testimonials
  • Contact

‘Highly critical’ CMS bug has left over 1 million sites open to attack

‘Highly critical’ CMS bug has left over 1 million sites open to attack
,
  • Uncategorized

The team behind the popular open-source CMS Drupal is urging admins to update their sites to ward off a nasty bug that could leave their sites “highly compromised” to attackers, according to the organization.

The effected versions (Drupal 6, 7 and 8) of the CMS power over one million websites on the internet.

Drupal has marked the security risk as “highly critical” and warns that any visitor to the site could theoretically hack it through remote code execution due to a missing input validation.

“This potentially allows attackers to exploit multiple attack vectors on a Drupal site, which could result in the site being completely compromised,” the group noted in a blog post.

Drupal sent out an alert last week, telling users that they’d be dropping a “highly critical release” this weekend and they should update immediately. The announcement was unusual for Drupal and left developers on high alert for the targeted time frame of the release on Friday. Sites running vulnerable versions of Drupal, should update to Drupal 7.58 or Drupal 8.5.1 as soon as possible to avoid exploits. Drupal notes that they have yet to see any reports of exploits in the wild yet.

The bug’s official identifier is CVE-2018-7600 though users on social media have taken to calling it drupalgeddon2, referencing another major release from the org in 2014.




Source link

Testimonials

  • We could not ask for a better IT partner in Cameroon than Weblartech. The dynamic team was able to satisfy all our needs from building our website to hosting and providing us… read more →
    Paulin Etoga Menye
  • "I love everything about WEBLARTECH. They are very professional, elegant and aesthetically pleasing. Besides that, their platforms  is also very easy to setup and use. Not only for you, but also for… read more →
    Chibuzor James
  • "Amazing! Not only do I love the website they delivered to us, their constant support has been outstanding for over four years now.I highly recommend WEBLARTECH for corporations needing a robust online… read more →
    Sir Frankline George
  • "Love it. This is probably one of the best purchases I have ever made. Everything about the Office is perfect, from the design to the back-end code. Get it, you won't regret… read more →
    Edwin
back up
© Copyright 2017 WEBLAR TECHNOLOGIES LTD
  • Home
  • Portfolio
  • Sitemap
  • Contact