CMS

Drupal addressed CVE-2020-13671 Remote Code Execution flawDrupal addressed CVE-2020-13671 Remote Code Execution flaw

Drupal addressed CVE-2020-13671 Remote Code Execution flaw

Drupal development team has released security updates to address a remote code execution flaw, tracked as CVE-2020-13671. The Drupal development…

5 years ago
A flaw in Concrete5 CMS could have allowed website takeoverA flaw in Concrete5 CMS could have allowed website takeover

A flaw in Concrete5 CMS could have allowed website takeover

A remote code execution (RCE) vulnerability affecting the Concrete5 CMS exposed numerous servers to full takeover, experts warn. A recently…

5 years ago
CVE-2019-6340 Critical flaw in Drupal allows Remote Code ExecutionCVE-2019-6340 Critical flaw in Drupal allows Remote Code Execution

CVE-2019-6340 Critical flaw in Drupal allows Remote Code Execution

Security expert found a “highly critical” vulnerability (CVE-2019-6340) in the popular Drupal CMS that could be exploited for remote code…

6 years ago
Drupal dev team fixed Remote Code Execution flaws in the popular CMSDrupal dev team fixed Remote Code Execution flaws in the popular CMS

Drupal dev team fixed Remote Code Execution flaws in the popular CMS

The Drupal development team has patched several vulnerabilities in version 7 and 8 of the popular CMS, including RCE flaws.…

7 years ago
Experts are observing Drupalgeddon2 (CVE-2018-7600) attacks in the wildExperts are observing Drupalgeddon2 (CVE-2018-7600) attacks in the wild

Experts are observing Drupalgeddon2 (CVE-2018-7600) attacks in the wild

After the publication of a working Proof-Of-Concept for Drupalgeddon2 on GitHub experts started observing attackers using it to deliver backdoors and crypto miners.…

7 years ago
Thousands of compromised Magento websites delivering MalwareThousands of compromised Magento websites delivering Malware

Thousands of compromised Magento websites delivering Malware

Hackers compromised hundreds of Magento e-commerce websites to steal credit card numbers and install crypto-mining malware. According to the security firm Flashpoint,…

7 years ago
Drupal finally addressed the critical CVE-2018-7600 Drupalgeddon2 vulnerabilityDrupal finally addressed the critical CVE-2018-7600 Drupalgeddon2 vulnerability

Drupal finally addressed the critical CVE-2018-7600 Drupalgeddon2 vulnerability

The Drupal development team has fixed the drupalgeddon2 vulnerability that could be exploited by an attacker to take over a…

7 years ago
Drupal addressed several vulnerabilities in Drupal 8 and 7Drupal addressed several vulnerabilities in Drupal 8 and 7

Drupal addressed several vulnerabilities in Drupal 8 and 7

The Drupal development team addressed many vulnerabilities in both Drupal 8 and 7, including some flaws rated as "critical". Drupal maintainers have…

7 years ago
Experts observed a new wave of wp-vcd malware attacks targeting WordPress sitesExperts observed a new wave of wp-vcd malware attacks targeting WordPress sites

Experts observed a new wave of wp-vcd malware attacks targeting WordPress sites

Experts from the firm Sucuri observed a new wave of wp-vcd malware attacks that is targeting WordPress sites leveraging flaws…

8 years ago
Drupal maintainers fix several access bypass vulnerabilities in Drupal 8Drupal maintainers fix several access bypass vulnerabilities in Drupal 8

Drupal maintainers fix several access bypass vulnerabilities in Drupal 8

Drupal maintainers this week released security updates to fix several access bypass vulnerabilities in Drupal 8. Update your installation. On Wednesday Drupal maintainers released…

8 years ago