CVE-2017-6920
06.08.2018, 15:29
Drupal core 8 before versions 8.3.4 allows remote attackers to execute arbitrary code due to the PECL YAML parser not handling PHP objects safely during certain operations.Enginsight
Vendor | Product | Version |
---|---|---|
drupal | drupal | 8.0.0 ≤ 𝑥 < 8.3.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References