download.php in the MuddyDogPaws FileDownload snippet before 2.5 for MODx allows remote attackers to download arbitrary files, as demonstrated by downloading config.inc.php to obtain database credentials.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Filedownload | Modxcms | 1.7 (including) | 1.7 (including) |
| Filedownload | Modxcms | 2.0 (including) | 2.0 (including) |