漏洞类别:CGI
漏洞等级:
漏洞信息
Drupal is a free and open-source content-management framework written in PHP and distributed under the GNU General Public License.
Drupal 5 has been detected on the host. Drupal 5 has reached end of life on January 6, 2011 and will no longer be supported for security advisories. Since there will be no further bug fixes or security updates for this version, it is recommended that you migrate from version 5 to Drupal supported releases such as 7 or Drupal 8.
漏洞危害
Depending on the vulnerability being exploited, an unauthenticated remote attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service on the targeted system.
解决方案
Customers are advised to upgrade to Drupal 7,8 or later versions to remediate this vulnerability.
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0day
文章评论