Modx · Modx Revolution · CVE-2017-9069
**Name of the Vulnerable Software and Affected Versions**
MODX Revolution versions prior to 2.5.7
**Description**
A user with file upload permissions can execute arbitrary code by uploading a file named `.htaccess`.
**Recommendations**
For MODX Revolution versions prior to 2.5.7, update to version 2.5.7 or later to resolve the issue.