Rewterz

Rewterz Threat Advisory – VMware Workstation, Fusion and Horizon Client Multiple Vulnerabilities

November 20, 2020
Rewterz

Rewterz Threat Advisory – CVE-2020-5947 – F5 BIG-IP security bypass

November 23, 2020

Rewterz Threat Advisory – CVE-2020-13671 – Drupal Core Critical Remote Code Execution Vulnerability

Severity

High

Analysis Summary

A vulnerability exists when Drupal core does not properly sanitize certain filenames on uploaded files, which can lead to files being interpreted as the incorrect extension and served as the wrong MIME type or executed as PHP for certain hosting configurations.

Impact

Remote Code Execution

Affected Vendors

Drupal

Affected Products

  • Drupal 7
  • Drupal 8.8 or earlier
  • Drupal 8.9
  • Drupal 9.0

Remediation

Install the latest version:

  • If you are using Drupal 9.0, update to Drupal 9.0.8
  • If you are using Drupal 8.9, update to Drupal 8.9.9
  • If you are using Drupal 8.8 or earlier, update to Drupal 8.8.11
  • If you are using Drupal 7, update to Drupal 7.74
  • Versions of Drupal 8 prior to 8.8.x are end-of-life and do not receive security coverage.

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.