CVE-2018-7600CISA KEVEPSS p100.0%

CVE-2018-7600Drupal Core Remote Code Execution Vulnerability

Drupal / Drupal Core

Description

Drupal Core contains a remote code execution vulnerability that could allow an attacker to exploit multiple attack vectors on a Drupal site, resulting in complete site compromise.

Scoring

EPSS99.99% probability of exploitation · percentile 100.0% · 2026-06-15T12:03:41Z

CISA KEV entry

Added to KEV: 2021-11-03

(incoming)1

TypeTargetConfidenceTier
KEVEntryDrupal Core Remote Code Execution Vulnerabilitykev-cve-2018-76000%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Drupal Core SQL Injection Vulnerability
CVE
DotNetNuke (DNN) Remote Code Execution Vulnerability
CVE
ThinkPHP "noneCms" Remote Code Execution Vulnerability
CVE
Drupal core Un-restricted Upload of File
CVE
Craft CMS Code Injection Vulnerability
CVE
WebKitGTK Memory Corruption Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.