Cross-site scripting (XSS) vulnerability in manager/index.php in MODx Revolution 2.0.2-pl allows remote attackers to inject arbitrary web script or HTML via the modhash parameter.
- http://packetstormsecurity.org/1009-exploits/modx202pl-xss.txt
- http://securityreason.com/securityalert/8435
No PoCs found on GitHub currently.