CVE-2011-0741

Modxcms Evolution < 1.0.4 - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in ModX Evolution before 1.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) installer or (2) image editor.

Scores

EPSS 0.0025
EPSS Percentile 48.5%

Classification

CWE
CWE-79
Status published

Affected Products (12)

modxcms/evolution < 1.0.4
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
n/a/n/a

Timeline

Published Feb 02, 2011
Tracked Since Feb 18, 2026