Loading
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an issue affecting multiple subsystems with default or common module configurations.
Use CWE-20, Drupal vendor hub and Drupal product page to widen CVE-2018-7600 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-55638, CVE-2024-55637 and CVE-2024-55636 for nearby disclosures in the same product family.