vendor:
Modx Revolution
by:
Vitalii Rudnykh
7.2
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: Modx Revolution
Affected Version From: <= 2.6.4
Affected Version To: None
Patch Exists: YES
Related CWE: CVE-2018-1000207
CPE: a:modx:modx_revolution:2.6.4
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: None
2018
Modx Revolution < 2.6.4 - Remote Code Execution
Modx Revolution version 2.6.4 and below is vulnerable to Remote Code Execution. An attacker can exploit this vulnerability by sending a malicious payload to the vulnerable server via the 'ctx' parameter in the 'connectors/system/phpthumb.php' file. This payload will create a new file 'payload.php' in the root directory of the server. The attacker can then access the file to execute arbitrary code on the vulnerable server.
Mitigation:
Upgrade to Modx Revolution version 2.6.5 or later.