Netskope Threat Labs

SERVER-WEBAPP Drupal 8 remote code execution attempt

IPS-NPA

1 SID: 46316

Detects an attempt to exploit CVE-2018-7600, a remote code execution flaw that can run code on the server in Drupal 8. The flaw, known as Drupalgeddon2, saw mass exploitation to drop webshells on unpatched sites.