CVE-2010-1427
15.04.2010, 21:30
Cross-site scripting (XSS) vulnerability in the SearchHighlight plugin in MODx Evolution before 1.0.3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to AjaxSearch.
Vendor | Product | Version |
---|---|---|
modxcms | evolution | 𝑥 ≤ 1.0.2 |
modxcms | evolution | 0.9.0 |
modxcms | evolution | 0.9.1 |
modxcms | evolution | 0.9.2.1 |
modxcms | evolution | 0.9.5 |
modxcms | evolution | 0.9.6 |
modxcms | evolution | 0.9.6.1 |
modxcms | evolution | 0.9.6.1:p1 |
modxcms | evolution | 0.9.6.2 |
𝑥
= Vulnerable software versions
References