Get a Pentest and security assessment of your IT network.

News

CVE-2018-14773 Symfony Flaw expose Drupal websites to hack

Maintainers at Drupal addressed the security bypass vulnerability by releasing a new version of the popular content management system, the version 8.5.6.6. The same vulnerability also exists in the Zend Feed and Diactoros libraries included in Drupal core. The flaw is due to the Symfonys support for legacy and risky HTTP headers. The fix drops support for these two obsolete IIS headers: X-Original-URL and X_REWRITE_URL.”]

Source: https://securityaffairs.co/wordpress/75020/hacking/cve-2018-14773-symfony-flaw.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin