Field Assessment
AI analysis pending.
CVE
CVE-2014-8773
Severity
MEDIUM
CVSS
6.8
EPSS
1.13%
Original Filing — NVD Description
MODX Revolution 2.x before 2.2.15 allows remote attackers to bypass the cross-site request forgery (CSRF) protection mechanism by (1) omitting the CSRF token or via a (2) long string in the CSRF token parameter.