Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-1000223 |
|
Cross-Site Scripting (XSS) in modx (CVE-2017-1000223)
cross-site scripting in modx (CVE-2017-1000223). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-6588 |
|
Cross-Site Scripting (XSS) in modx (CVE-2015-6588)
cross-site scripting in modx (CVE-2015-6588). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11744 |
|
Cross-Site Scripting (XSS) in modx (CVE-2017-11744)
cross-site scripting in modx (CVE-2017-11744). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000067 |
|
SQL Injection in sqli (CVE-2017-1000067)
SQL injection in sqli (CVE-2017-1000067). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9067 |
|
Path Traversal in path-traversal (CVE-2017-9067)
path traversal in path-traversal (CVE-2017-9067). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9068 |
|
Cross-Site Scripting (XSS) in modx (CVE-2017-9068)
cross-site scripting in modx (CVE-2017-9068). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9069 |
|
Unrestricted File Upload in modx (CVE-2017-9069)
vulnerability in modx (CVE-2017-9069). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9070 |
|
Cross-Site Scripting (XSS) in modx (CVE-2017-9070)
cross-site scripting in modx (CVE-2017-9070). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9071 |
|
Cross-Site Scripting (XSS) in modx (CVE-2017-9071)
cross-site scripting in modx (CVE-2017-9071). Risk of unauthorized operations or information disclosure. Exploitable via `Host header`.
|
| CVE-2017-8115 |
|
Path Traversal in path-traversal (CVE-2017-8115)
path traversal in path-traversal (CVE-2017-8115). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7320 |
|
Cross-Site Scripting (XSS) in dos (CVE-2017-7320)
cross-site scripting in dos (CVE-2017-7320). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7321 |
|
Code Injection in modx (CVE-2017-7321)
code injection in modx (CVE-2017-7321). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7322 |
|
Vulnerability in modx (CVE-2017-7322)
vulnerability in modx (CVE-2017-7322). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7324 |
|
Code Injection in modx (CVE-2017-7324)
code injection in modx (CVE-2017-7324). Successful exploitation can lead to full system takeover.
|