📦

filedownload

Vendor: modxcms

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 1.81% Exploit Prob.
Latest CVE CVE-2015-1000004 Oct 06

Security Vulnerability Index

Page 1 / 1
6.1 CVSS

XSS in filedownload v1.4 wordpress plugin

EPSS: 1.37%
9.8 CVSS

Blind SQL Injection in filedownload v1.4 wordpress plugin

EPSS: 2.65%
8.2 CVSS

Open Proxy in filedownload v1.4 wordpress plugin

EPSS: 1.83%
7.5 CVSS

download.php in the MuddyDogPaws FileDownload snippet before 2.5 for MODx allows remote attackers to download arbitrary files, as demonstrated by downloading config.inc.php to obtain database credentials.

EPSS: 1.40%