{"api_version":"1","generated_at":"2026-07-23T04:34:17+00:00","cve":"CVE-2017-9067","urls":{"html":"https://cve.report/CVE-2017-9067","api":"https://cve.report/api/cve/CVE-2017-9067.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2017-9067","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2017-9067"},"summary":{"title":"CVE-2017-9067","description":"In MODX Revolution before 2.5.7, when PHP 5.3.3 is used, an attacker is able to include and execute arbitrary files on the web server due to insufficient validation of the action parameter to setup/index.php, aka directory traversal.","state":"PUBLISHED","assigner":"mitre","published_at":"2017-05-18 16:29:00","updated_at":"2025-04-20 01:37:25"},"problem_types":["CWE-22","n/a"],"metrics":[{"version":"3.0","source":"nvd@nist.gov","type":"Primary","score":"7","severity":"HIGH","vector":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","data":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.4","severity":"","vector":"AV:L/AC:M/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:L/AC:M/Au:N/C:P/I:P/A:P","baseScore":4.4,"accessVector":"LOCAL","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"https://github.com/modxcms/revolution/pull/13428","name":"https://github.com/modxcms/revolution/pull/13428","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"[SECURITY-20] Improve local file inclusion protections by opengeek · Pull Request #13428 · modxcms/revolution · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://github.com/modxcms/revolution/pull/13422","name":"https://github.com/modxcms/revolution/pull/13422","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"[SECURITY-20] Fix local file inclusion vulnerability in setup action parameter by Mark-H · Pull Request #13422 · modxcms/revolution · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://citadelo.com/en/2017/04/modx-revolution-cms/","name":"https://citadelo.com/en/2017/04/modx-revolution-cms/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Third Party Advisory"],"title":"MODX Revolution CMS 2.5.6 - Multiple Vulnerabilities - CITADELO","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2017-9067","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2017-9067","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2017","cve_id":"9067","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"modx","cpe5":"modx_revolution","cpe6":"2.5.6","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"9067","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"php","cpe5":"php","cpe6":"5.3.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-05T16:55:21.879Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://citadelo.com/en/2017/04/modx-revolution-cms/"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://github.com/modxcms/revolution/pull/13428"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://github.com/modxcms/revolution/pull/13422"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"descriptions":[{"lang":"en","value":"In MODX Revolution before 2.5.7, when PHP 5.3.3 is used, an attacker is able to include and execute arbitrary files on the web server due to insufficient validation of the action parameter to setup/index.php, aka directory traversal."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-05-18T16:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_MISC"],"url":"https://citadelo.com/en/2017/04/modx-revolution-cms/"},{"tags":["x_refsource_MISC"],"url":"https://github.com/modxcms/revolution/pull/13428"},{"tags":["x_refsource_MISC"],"url":"https://github.com/modxcms/revolution/pull/13422"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2017-9067","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"In MODX Revolution before 2.5.7, when PHP 5.3.3 is used, an attacker is able to include and execute arbitrary files on the web server due to insufficient validation of the action parameter to setup/index.php, aka directory traversal."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"https://citadelo.com/en/2017/04/modx-revolution-cms/","refsource":"MISC","url":"https://citadelo.com/en/2017/04/modx-revolution-cms/"},{"name":"https://github.com/modxcms/revolution/pull/13428","refsource":"MISC","url":"https://github.com/modxcms/revolution/pull/13428"},{"name":"https://github.com/modxcms/revolution/pull/13422","refsource":"MISC","url":"https://github.com/modxcms/revolution/pull/13422"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2017-9067","datePublished":"2017-05-18T16:00:00.000Z","dateReserved":"2017-05-18T00:00:00.000Z","dateUpdated":"2024-09-16T20:32:21.759Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2017-05-18 16:29:00","lastModifiedDate":"2025-04-20 01:37:25","problem_types":["CWE-22","n/a"],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:M/Au:N/C:P/I:P/A:P","baseScore":4.4,"accessVector":"LOCAL","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.4,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:modx:modx_revolution:2.5.6:*:*:*:*:*:*:*","matchCriteriaId":"B6F55854-0593-47D3-B84B-810C2D41A37F"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:5.3.3:*:*:*:*:*:*:*","matchCriteriaId":"B0F40E4A-E125-4099-A8B3-D42614AA9312"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2017","CveId":"9067","Ordinal":"1","Title":"CVE-2017-9067","CVE":"CVE-2017-9067","Year":"2017"},"notes":[{"CveYear":"2017","CveId":"9067","Ordinal":"1","NoteData":"In MODX Revolution before 2.5.7, when PHP 5.3.3 is used, an attacker is able to include and execute arbitrary files on the web server due to insufficient validation of the action parameter to setup/index.php, aka directory traversal.","Type":"Description","Title":"CVE-2017-9067"},{"CveYear":"2017","CveId":"9067","Ordinal":"2","NoteData":"2017-05-18","Type":"Other","Title":"Published"}]}}}