Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2010-4883

Overview

Vulnerability Score 2.6 2.6
CVE Id CVE-2010-4883
Last Modified 13 Feb 2012 11:02:30
Published 07 Oct 2011 06:55:08
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity HIGH
Authentication NONE

CVE-2010-4883

Summary

Cross-site scripting (XSS) vulnerability in manager/index.php in MODx Revolution 2.0.2-pl allows remote attackers to inject arbitrary web script or HTML via the modhash parameter.

Vulnerable Systems

Application

  • Modx Revolution 2.0.2-pl


References

CONFIRM - http://modxcms.com/forums/index.php/topic,55105.0.html

XF - modx-modahsh-xss(62070)

BID - 43577

OSVDB - 68264

SECUNIA - 41638

MISC - http://packetstormsecurity.org/1009-exploits/modx202pl-xss.txt

CONFIRM - http://modxcms.com/forums/index.php/topic,55104.0.html

SREASON - 8435


Last Updated: 27 May 2016 10:58:12