GitHub PR #1395 - NSE script for CVE-2018-7600 (RCE vulnerability on Drupal 7.x, 8.x)
Kostas Milonas <[email protected]> Sun, 2 Dec 2018 14:39:16 +0000
| Newsgroups | gmane.comp.security.nmap.devel |
|---|---|
| Message-ID | <CAF7qu+W0W1vQ=4MUN9K1XtCNEz-0bhf-6Df0VW8i-fx9MPBc7g@mail.gmail.com> |
Hello everyone. A few days ago I created a pull request with an NSE script about CVE-2018-7600 (Drupalgeddon 2), the RCE vulnerability on Drupal 7.x, 8.x. The URL of the pull request is: https://github.com/nmap/nmap/pull/1395 The script creates a file through the vulnerability and then makes an additional request to check if the file was really created in order to mark the target as vulnerable. Thank you in advance for your time reviewing the pull request, Kostas _______________________________________________ Sent through the dev mailing list https://nmap.org/mailman/listinfo/dev Archived at http://seclists.org/nmap-dev/