Description
MODX Revolution through v2.7.0-pl allows XSS via an extended user field such as Container name or Attribute name.
Remediation
References
Related Vulnerabilities
WordPress Plugin Photo Gallery by 10Web-Mobile-Friendly Image Gallery Cross-Site Scripting (1.5.22)
WordPress Plugin LB Mixed Slideshow 'upload.php' Arbitrary File Upload (1.0)
WordPress Plugin Breeze-WordPress Cache Open Redirect (1.0.10)
Oracle Application Server CVE-2006-0275 Vulnerability (CVE-2006-0275)