{"id":21653,"date":"2018-04-05T18:16:54","date_gmt":"2018-04-05T12:46:54","guid":{"rendered":"https:\/\/blog.resellerclub.com\/?p=21653"},"modified":"2026-02-13T10:38:42","modified_gmt":"2026-02-13T10:38:42","slug":"drupal-fixes-flaw-that-allows-hackers-to-take-over-sites","status":"publish","type":"post","link":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/","title":{"rendered":"Drupal Fixes Flaw That Allows Hackers to Take Over Sites"},"content":{"rendered":"<p><span style=\"font-weight: 400;\">This post aims to throw light on the recent flaws discovered in Drupal that exposed it to hackers. The Drupal CMS team has fixed a highly critical security flaw that allows hackers to take over a site just by accessing an URL. This means that Drupal site owners should <\/span><b>immediately <\/b><span style=\"font-weight: 400;\">update their sites to Drupal 7.58 or Drupal 8.5.1, depending on the version they\u2019re running. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">The Drupal team<\/span><a href=\"https:\/\/www.drupal.org\/psa-2018-001\"> <span style=\"font-weight: 400;\">pre-announced<\/span><\/a><span style=\"font-weight: 400;\"> the recent patches last week when it said &#8220;exploits might be developed within hours or days&#8221; after the disclosure. This security flaw is indeed a severe one, with the Drupal team assigning it a severity score of 21 (on a scale of 1 to 25).<\/span><\/p>\n<p><b>Drupal affected by unauthenticated RCE flaw<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The bug \u2014tracked under the<\/span><a href=\"https:\/\/groups.drupal.org\/security\/faq-2018-002\"> <span style=\"font-weight: 400;\">CVE-2018-7600<\/span><\/a><span style=\"font-weight: 400;\"> identifier\u2014 allows an attacker to run any code he desires against the CMS&#8217; core component, effectively taking over the site.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The attacker doesn&#8217;t need to be registered or authenticated on the targeted site, and all the attacker needs to do is access the URL.<\/span><\/p>\n<p><b>Drupalgeddon2<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Drupal community has already nicknamed this bug as Drupalgeddon2 after the Drupalgeddon security bug (<\/span><a href=\"https:\/\/www.drupal.org\/forum\/newsletters\/security-advisories-for-drupal-core\/2014-10-15\/sa-core-2014-005-drupal-core-sql\"><span style=\"font-weight: 400;\">CVE-2014-3704<\/span><\/a><span style=\"font-weight: 400;\">, SQL injection, severity 25\/25) disclosed in 2014 that led to numerous Drupal sites getting hacked for years afterward.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The Drupal team says it was not aware of any attacks exploiting the flaw when they published their<\/span><a href=\"https:\/\/www.drupal.org\/sa-core-2018-002\"> <span style=\"font-weight: 400;\">security alert<\/span><\/a><span style=\"font-weight: 400;\">, but everyone from the official Drupal team to independent security researchers expect this vulnerability to enter active exploitation within hours or days. Patching should not be ignored.<\/span><\/p>\n<p><b>EOLed Drupal 6 also affected<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Besides fixes for Drupal&#8217;s two main branches \u20147.x and 8.x\u2014 the Drupal team announced patches for the ancient 6.x branch that was discontinued in February 2016.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Web firewall products are expected to receive updates in the following days to handle exploitation attempts.<\/span><\/p>\n<p><b>What Drupal site owners can do<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Drupal developers recommend patching first, but if this isn&#8217;t possible, apply mitigation solutions such as temporarily replacing a Drupal site with a static HTML page, so the vulnerable Drupal site would not serve the vulnerable URLs to visitors.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">In addition, it is highly recommended that all staging and in-dev Drupal installations should be updated or taken down completely until the patch can be applied.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">For more information on this, head over to <\/span><a href=\"https:\/\/www.drupal.org\/security\"><span style=\"font-weight: 400;\">https:\/\/www.drupal.org\/security<\/span><\/a><\/p>\n<h2>Reseller Club Hosting Services<\/h2>\n<p><a href=\"https:\/\/www.resellerclub.com\/reseller-hosting\">Reseller Hosting<\/a> | <a href=\"https:\/\/www.resellerclub.com\/windows-reseller-hosting\">Windows Reseller Hosting<\/a> | <a href=\"https:\/\/www.resellerclub.com\/cloud-hosting\">Cloud Hosting<\/a> | <a href=\"https:\/\/www.resellerclub.com\/vps-hosting\">VPS Hosting<\/a> | <a href=\"https:\/\/www.resellerclub.com\/managed-vps-hosting\">Managed VPS Hosting<\/a> | <a href=\"https:\/\/www.resellerclub.com\/dedicated-server-hosting\">Dedicated Server Hosting<\/a> | <a href=\"https:\/\/www.resellerclub.com\/windows-dedicated-server-hosting\">Windows Dedicated Server<\/a> | <a href=\"https:\/\/www.resellerclub.com\/managed-dedicated-server-hosting\">Managed Dedicated Server<\/a> | <a href=\"https:\/\/www.resellerclub.com\/shared-hosting\">Linux Shared Hosting<\/a> | <a href=\"https:\/\/www.resellerclub.com\/windows-shared-hosting\">Windows Shared Hosting<\/a><\/p>\n<div class=\"fb-background-color\">\n\t\t\t  <div \n\t\t\t  \tclass = \"fb-comments\" \n\t\t\t  \tdata-href = \"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/\"\n\t\t\t  \tdata-numposts = \"10\"\n\t\t\t  \tdata-lazy = \"true\"\n\t\t\t\tdata-colorscheme = \"light\"\n\t\t\t\tdata-order-by = \"social\"\n\t\t\t\tdata-mobile=true>\n\t\t\t  <\/div><\/div>\n\t\t  <style>\n\t\t    .fb-background-color {\n\t\t\t\tbackground:  !important;\n\t\t\t}\n\t\t\t.fb_iframe_widget_fluid_desktop iframe {\n\t\t\t    width: 100% !important;\n\t\t\t}\n\t\t  <\/style>\n\t\t  ","protected":false},"excerpt":{"rendered":"<p>This post aims to throw light on the recent flaws discovered in Drupal that exposed it to hackers. The Drupal CMS team has fixed a highly critical security flaw that allows hackers to take over a site just by accessing an URL. This means that Drupal site owners should immediately update their sites to Drupal<\/p>\n","protected":false},"author":40,"featured_media":21665,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1523],"tags":[652,135,5615],"hashtags":[],"class_list":{"0":"post-21653","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-development","8":"tag-drupal","9":"tag-security","10":"tag-vulnerabilities"},"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v17.1 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Drupal Fixes Flaw That Allows Hackers to Take Over Sites<\/title>\n<meta name=\"description\" content=\"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Drupal Fixes Flaw That Allows Hackers to Take Over Sites\" \/>\n<meta property=\"og:description\" content=\"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/\" \/>\n<meta property=\"og:site_name\" content=\"ResellerClub Blog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/profile.php?id=100005889763273\" \/>\n<meta property=\"article:published_time\" content=\"2018-04-05T12:46:54+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-02-13T10:38:42+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Amrita\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#website\",\"url\":\"https:\/\/www.resellerclub.com\/blog\/\",\"name\":\"ResellerClub Blog\",\"description\":\"Web Hosting &amp; Domains\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.resellerclub.com\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#primaryimage\",\"inLanguage\":\"en-US\",\"url\":\"\",\"contentUrl\":\"\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#webpage\",\"url\":\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/\",\"name\":\"Drupal Fixes Flaw That Allows Hackers to Take Over Sites\",\"isPartOf\":{\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#primaryimage\"},\"datePublished\":\"2018-04-05T12:46:54+00:00\",\"dateModified\":\"2026-02-13T10:38:42+00:00\",\"author\":{\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#\/schema\/person\/3022c632f8c79376e89b21ebd7e3c777\"},\"description\":\"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!\",\"breadcrumb\":{\"@id\":\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.resellerclub.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Drupal Fixes Flaw That Allows Hackers to Take Over Sites\"}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#\/schema\/person\/3022c632f8c79376e89b21ebd7e3c777\",\"name\":\"Amrita\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2019\/08\/amrita.k-150x150.jpg\",\"contentUrl\":\"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2019\/08\/amrita.k-150x150.jpg\",\"caption\":\"Amrita\"},\"description\":\"Amrita Konaiagari is the Team Lead for Content Marketing at Endurance International Group (APAC). She is also the Editor of the ResellerClub blog. She holds a Bachelor\\u2019s Degree in Psychology from St. Xavier\\u2019s College, Mumbai and a Master\\u2019s Degree in Communication & Journalism from the Mumbai University. She has 9 years of experience in Digital Marketing. She has a passion for home decor and hopes to one day be a book author.\",\"url\":\"https:\/\/www.resellerclub.com\/blog\/author\/amrita-k\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Drupal Fixes Flaw That Allows Hackers to Take Over Sites","description":"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/","og_locale":"en_US","og_type":"article","og_title":"Drupal Fixes Flaw That Allows Hackers to Take Over Sites","og_description":"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!","og_url":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/","og_site_name":"ResellerClub Blog","article_publisher":"https:\/\/www.facebook.com\/profile.php?id=100005889763273","article_published_time":"2018-04-05T12:46:54+00:00","article_modified_time":"2026-02-13T10:38:42+00:00","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Amrita","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebSite","@id":"https:\/\/www.resellerclub.com\/blog\/#website","url":"https:\/\/www.resellerclub.com\/blog\/","name":"ResellerClub Blog","description":"Web Hosting &amp; Domains","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.resellerclub.com\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"ImageObject","@id":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#primaryimage","inLanguage":"en-US","url":"","contentUrl":""},{"@type":"WebPage","@id":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#webpage","url":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/","name":"Drupal Fixes Flaw That Allows Hackers to Take Over Sites","isPartOf":{"@id":"https:\/\/www.resellerclub.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#primaryimage"},"datePublished":"2018-04-05T12:46:54+00:00","dateModified":"2026-02-13T10:38:42+00:00","author":{"@id":"https:\/\/www.resellerclub.com\/blog\/#\/schema\/person\/3022c632f8c79376e89b21ebd7e3c777"},"description":"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!","breadcrumb":{"@id":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.resellerclub.com\/blog\/drupal-fixes-flaw-that-allows-hackers-to-take-over-sites\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.resellerclub.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Drupal Fixes Flaw That Allows Hackers to Take Over Sites"}]},{"@type":"Person","@id":"https:\/\/www.resellerclub.com\/blog\/#\/schema\/person\/3022c632f8c79376e89b21ebd7e3c777","name":"Amrita","image":{"@type":"ImageObject","@id":"https:\/\/www.resellerclub.com\/blog\/#personlogo","inLanguage":"en-US","url":"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2019\/08\/amrita.k-150x150.jpg","contentUrl":"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2019\/08\/amrita.k-150x150.jpg","caption":"Amrita"},"description":"Amrita Konaiagari is the Team Lead for Content Marketing at Endurance International Group (APAC). She is also the Editor of the ResellerClub blog. She holds a Bachelor\u2019s Degree in Psychology from St. Xavier\u2019s College, Mumbai and a Master\u2019s Degree in Communication & Journalism from the Mumbai University. She has 9 years of experience in Digital Marketing. She has a passion for home decor and hopes to one day be a book author.","url":"https:\/\/www.resellerclub.com\/blog\/author\/amrita-k\/"}]}},"_links":{"self":[{"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/posts\/21653","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/users\/40"}],"replies":[{"embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/comments?post=21653"}],"version-history":[{"count":2,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/posts\/21653\/revisions"}],"predecessor-version":[{"id":39666,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/posts\/21653\/revisions\/39666"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/media?parent=21653"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/categories?post=21653"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/tags?post=21653"},{"taxonomy":"hashtags","embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/hashtags?post=21653"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}