CVE-2018-1000207
Modx Revolution Remote Code Execution
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
MODX Revolution version <=2.6.4 contains a Incorrect Access Control vulnerability in Filtering user parameters before passing them into phpthumb class that can result in Creating file with custom a filename and content. This attack appear to be exploitable via Web request. This vulnerability appears to have been fixed in commit 06bc94257408f6a575de20ddb955aca505ef6e68.
MODX Revolution en versiones iguales o anteriores a la 2.6.4 contiene una vulnerabilidad de control de acceso incorrecto en el filtrado de parámetros user antes de pasarlos a la clase phpthumb, lo que puede resultar en la creación de un archivo con un nombre de archivo y un contenido personalizados. Parece ser que este ataque puede ser explotado mediante una petición web. La vulnerabilidad parece haber sido solucionada en el commit con ID 06bc94257408f6a575de20ddb955aca505ef6e68.
Modx Revolution versions prior to 2.6.4 suffer from a remote code execution vulnerability.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-07-09 CVE Reserved
- 2018-07-13 CVE Published
- 2023-12-04 EPSS Updated
- 2024-08-05 CVE Updated
- 2024-08-05 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-732: Incorrect Permission Assignment for Critical Resource
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://github.com/a2u/CVE-2018-1000207 | Broken Link |
URL | Date | SRC |
---|---|---|
https://github.com/modxcms/revolution/pull/13979 | 2024-08-05 | |
https://rudnkh.me/posts/critical-vulnerability-in-modx-revolution-2-6-4 | 2024-08-05 |
URL | Date | SRC |
---|---|---|
https://github.com/modxcms/revolution/commit/06bc94257408f6a575de20ddb955aca505ef6e68 | 2019-10-03 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Modx Search vendor "Modx" | Modx Revolution Search vendor "Modx" for product "Modx Revolution" | <= 2.6.4 Search vendor "Modx" for product "Modx Revolution" and version " <= 2.6.4" | - |
Affected
|