Drupal 7.31, vulnerable to Drupalgeddon (CVE-2014-3704): expandArguments uses the keys of an array argument to build placeholder names, so a login request with name[0 ;SQL ...] runs attacker SQL (for example inserting an administrator) without authentication.
Pas commencéDockercommit 4334049x86_64 · aarch64Secret
Exploit Drupalgeddon (CVE-2014-3704) to inject SQL, take over the site and get a shell.
Le brief de ce lab se trouve dans son dépôt.