CVE-2011-0741: XSS
Multiple cross-site scripting (XSS) vulnerabilities in ModX Evolution before 1.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) installer or (2) image editor.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0741?
CVE-2011-0741 is classified as a medium-severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2011-0741?
To fix CVE-2011-0741, upgrade ModX Evolution to version 1.0.5 or later.
What versions of ModX Evolution are affected by CVE-2011-0741?
CVE-2011-0741 affects ModX Evolution versions prior to 1.0.5, including 0.9.0, 0.9.1, 0.9.2.1, 0.9.5, 0.9.6, and 1.0.2 to 1.0.4.
Can CVE-2011-0741 be exploited remotely?
Yes, CVE-2011-0741 can be exploited remotely by injecting arbitrary web scripts through the installer or image editor.
What types of attacks can result from CVE-2011-0741?
CVE-2011-0741 can lead to cross-site scripting (XSS) attacks that allow attackers to execute malicious scripts in the context of users' browsers.