Security Advisory
CVE-2017-9069
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
In MODX Revolution before 2.5.7, a user with file upload permissions is able to execute arbitrary code by uploading a file with the name .htaccess.