Total vulnerabilities in the database
In MODX Revolution before 2.5.7, a user with file upload permissions is able to execute arbitrary code by uploading a file with the name .htaccess.
CVSS v3:
CVSS v2:
CWEs: