Show filters
200 Total Results
Displaying 111-120 of 200
Sort by:
Attacker Value
Unknown

CVE-2017-8115

Disclosure Date: April 25, 2017 (last updated November 26, 2024)
Directory traversal in setup/processors/url_search.php (aka the search page of an unused processor) in MODX Revolution 2.5.7 might allow remote attackers to obtain system directory information.
0
Attacker Value
Unknown

CVE-2017-7323

Disclosure Date: March 30, 2017 (last updated November 26, 2024)
The (1) update and (2) package-installation features in MODX Revolution 2.5.4-pl and earlier use http://rest.modx.com by default, which allows man-in-the-middle attackers to spoof servers and trigger the execution of arbitrary code by leveraging the lack of the HTTPS protection mechanism.
Attacker Value
Unknown

CVE-2017-7321

Disclosure Date: March 30, 2017 (last updated November 26, 2024)
setup/controllers/welcome.php in MODX Revolution 2.5.4-pl and earlier allows remote attackers to execute arbitrary PHP code via the config_key parameter to the setup/index.php?action=welcome URI.
Attacker Value
Unknown

CVE-2017-7322

Disclosure Date: March 30, 2017 (last updated November 26, 2024)
The (1) update and (2) package-installation features in MODX Revolution 2.5.4-pl and earlier do not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and trigger the execution of arbitrary code via a crafted certificate.
Attacker Value
Unknown

CVE-2017-7324

Disclosure Date: March 30, 2017 (last updated November 26, 2024)
setup/templates/findcore.php in MODX Revolution 2.5.4-pl and earlier allows remote attackers to execute arbitrary PHP code via the core_path parameter.
Attacker Value
Unknown

CVE-2017-7320

Disclosure Date: March 30, 2017 (last updated November 26, 2024)
setup/controllers/language.php in MODX Revolution 2.5.4-pl and earlier does not properly constrain the language parameter, which allows remote attackers to conduct Cookie-Bombing attacks and cause a denial of service (cookie quota exhaustion), or conduct HTTP Response Splitting attacks with resultant XSS, via an invalid parameter value.
Attacker Value
Unknown

CVE-2017-5539

Disclosure Date: January 23, 2017 (last updated November 25, 2024)
The patch for directory traversal (CVE-2017-5480) in b2evolution version 6.8.4-stable has a bypass vulnerability. An attacker can use ..\/ to bypass the filter rule. Then, this attacker can exploit this vulnerability to delete or read any files on the server. It can also be used to determine whether a file exists.
0
Attacker Value
Unknown

CVE-2017-5553

Disclosure Date: January 23, 2017 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in plugins/markdown_plugin/_markdown.plugin.php in b2evolution before 6.8.5 allows remote authenticated users to inject arbitrary web script or HTML via a javascript: URL.
0
Attacker Value
Unknown

CVE-2016-7150

Disclosure Date: January 18, 2017 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in b2evolution 6.7.5 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the site name.
0
Attacker Value
Unknown

CVE-2016-7149

Disclosure Date: January 18, 2017 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in b2evolution 6.7.5 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to the autolink function.
0