Description
Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote attackers to perform local file inclusion/traversal/manipulation via a crafted dir parameter, related to browser/directory/getfiles.
Remediation
References
Related Vulnerabilities
phpMyAdmin Other Vulnerability (CVE-2005-3787)
WordPress Plugin Wp Cookie Choice Cross-Site Request Forgery (1.1.0)
Vanilla Forums Deserialization of Untrusted Data Vulnerability (CVE-2018-19499)
Java Unspesificed Vulnerability (CVE-2018-3136)
Django Improper Input Validation Vulnerability (CVE-2023-31047)