dreadlocked/Drupalgeddon2
Exploit for Drupal v7.x + v8.x (Drupalgeddon 2 / CVE-2018-7600 / SA-CORE-2018-002)
Ruby
Issues
- 0
Connection reset by peer (Errno::ECONNRESET
#70 opened by mzrismuarf - 0
Help in determining injection path
#67 opened by Ravaan21 - 0
Connection reset by peer
#69 opened by whoamins - 1
ModuleNotFoundError: No module named 'colorclass'
#68 opened by K4IdO - 0
Drupal v7.54
#65 opened by feint9 - 1
drupalgeddon2 options for insecure https
#63 opened by izzatzr - 1
Target is not exploitabe
#64 opened by KatalyzerG - 2
using the user/login instead user/password?
#58 opened by intrd - 3
Not working for me :( please help!!
#62 opened by Devilemox - 1
- 4
error when running
#55 opened by 0ktavandi - 8
Add Drupal v6.x support
#8 opened by syrius01 - 2
[drupalgeddon2-customizable-beta.rb] 4th argument method - always /user/password
#38 opened by TheRogue27 - 2
Can not detect Drupal version cause it stops iterating when one of the possible URLs gets a 200 response
#49 opened by iammyr - 2
- 2
- 1
Adapt to drupal 6
#48 opened by H4ckTrooper - 2
- 2
Drupal 7.37 (form_id and form_build_id)
#42 opened by xk005 - 3
- 1
disabled PHP function?
#41 opened by ivnish - 1
Drupal v8.x detected as v6.x?
#45 opened by WTPRabbit - 7
- 4
[drupalgeddon2-customizable-beta.rb] breaks with special characters / non-escaped payloads (Found and Fixed)
#32 opened by m4lv0id - 6
CVE-2018-7602 (SA-CORE-004) #Drupalgeddon3
#36 opened by syrius01 - 4
Strange behavior with Drupal 7.34
#40 opened by leo72 - 4
- 1
Drupal 6.x Vulnerablity
#27 opened by stewpeed - 1
sites/default/files
#30 opened by TheRogue27 - 2
/usr/lib/ruby/2.3.0/net/http.rb:1561:in `addr_port': undefined method `+' for nil:NilClass (NoMethodError)
#33 opened by TheRogue27 - 7
- 5
Not even able to execute *direct commands*
#22 opened by 0xQwip - 17
Exploit FAILED ~ Response: 404
#6 opened by stinkefisch - 5
Assert is the new sexy
#19 opened by X-C3LL - 8
- 4
exploit has been ported to CVE-in-Ruby
#5 opened by KINGSABRI - 1
- 1
- 5
Getting error `exploit': undefined method most of the time even if my site is vulnerable.
#11 opened by dbjpanda - 8
Exploit fails on drupal 7
#7 opened by gtc51