Modx

Revolution

3 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 5.12%
  • Published 26.02.2022 21:15:08
  • Last modified 21.11.2024 06:53:31

MODX Revolution through 2.8.3-pl allows remote authenticated administrators to execute arbitrary code by uploading an executable file, because the Uploadable File Types setting can be changed by an administrator.

  • EPSS 0.55%
  • Published 17.07.2017 13:18:18
  • Last modified 20.04.2025 01:37:25

MODX Revolution version 2.x - 2.5.6 is vulnerable to blind SQL injection caused by improper sanitization by the escape method resulting in authenticated user accessing database and possibly escalating privileges.

Exploit
  • EPSS 8.86%
  • Published 07.10.2011 10:55:08
  • Last modified 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in manager/index.php in MODx Revolution 2.0.2-pl allows remote attackers to inject arbitrary web script or HTML via the modhash parameter.