Naviwebs
Naviwebs Navigate CMS: vulnerabilidades y CVE
Naviwebs Navigate CMS tiene 22 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE22
Últimos 12 meses2
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2020-37054 | Media (5.1) | 0.24% | — | 30 ene 2026 | Navigate CMS 2.8.7 contains a cross-site request forgery vulnerability that allows attackers to upload malicious extensions through a crafted HTML page. Attackers can trick authenticated administrators into executing… |
| CVE-2020-37053 | Alta (7.1) | 0.38% | — | 30 ene 2026 | Navigate CMS 2.8.7 contains an authenticated SQL injection vulnerability that allows attackers to leak database information by manipulating the 'sidx' parameter in comments. Attackers can exploit the vulnerability to… |
| CVE-2022-28117 | Media (4.9) | 23% | — | 28 abr 2022 | A Server-Side Request Forgery (SSRF) in feed_parser class of Navigate CMS v2.9.4 allows remote attackers to force the application to make arbitrary requests via injection of arbitrary URLs into the feed parameter. |
| CVE-2021-44299 | Media (5.4) | 0.44% | — | 19 ene 2022 | A reflected cross-site scripting (XSS) vulnerability in \lib\packages\themes\themes.php of Navigate CMS v2.9.4 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload. |
| CVE-2021-44351 | Alta (7.5) | 1.8% | — | 6 ene 2022 | An arbitrary file read vulnerability exists in NavigateCMS 2.9 via /navigate/navigate_download.php id parameter. |
| CVE-2021-36455 | Alta (8.8) | 1.1% | — | 6 ago 2021 | SQL Injection vulnerability in Naviwebs Navigate CMS 2.9 via the quicksearch parameter in \lib\packages\comments\comments.php. |
| CVE-2021-36454 | Media (5.4) | 0.55% | — | 6 ago 2021 | Cross Site Scripting (XSS) vulnerability in Naviwebs Navigate Cms 2.9 via the navigate-quickse parameter to 1) backups\backups.php, 2) blocks\blocks.php, 3) brands\brands.php, 4) comments\comments.php, 5)… |
| CVE-2020-23711 | Crítica (9.8) | 1.5% | — | 28 jun 2021 | SQL Injection vulnerability in NavigateCMS 2.9 via the URL encoded GET input category in navigate.php. |
| CVE-2020-14018 | Media (6.1) | 0.93% | — | 24 jun 2020 | An issue was discovered in Navigate CMS 2.9 r1433. There is a stored XSS vulnerability that is executed on the page to view users, and on the page to edit users. This is present in both the User field and the E-Mail… |
| CVE-2020-14017 | Alta (7.5) | 1.2% | — | 24 jun 2020 | An issue was discovered in Navigate CMS 2.9 r1433. Sessions, as well as associated information such as CSRF tokens, are stored in cleartext files in the directory /private/sessions. An unauthenticated user could use a… |
| CVE-2020-14016 | Media (5.3) | 1.6% | — | 24 jun 2020 | An issue was discovered in Navigate CMS 2.9 r1433. The forgot-password feature allows users to reset their passwords by using either their username or the email address associated with their account. However, the… |
| CVE-2020-14015 | Alta (7.5) | 1.4% | — | 24 jun 2020 | An issue was discovered in Navigate CMS 2.9 r1433. When performing a password reset, a user is emailed an activation code that allows them to reset their password. There is, however, a flaw when no activation code is… |
| CVE-2020-14014 | Media (5.4) | 0.65% | — | 24 jun 2020 | An issue was discovered in Navigate CMS 2.8 and 2.9 r1433. The query parameter fid on the resource navigate.php does not perform sufficient data validation and/or encoding, making it vulnerable to reflected XSS. |
| CVE-2020-14927 | Media (4.8) | 0.55% | — | 19 jun 2020 | Navigate CMS 2.9 allows XSS via the Alias or Real URL field of the "Web Sites > Create > Aliases > Add" screen. |
| CVE-2020-13798 | Media (6.1) | 0.68% | — | 3 jun 2020 | An issue was discovered in Navigate CMS through 2.8.7. It allows XSS because of a lack of purify calls in lib/packages/feeds/feed.class.php. |
| CVE-2020-13797 | Media (6.1) | 0.68% | — | 3 jun 2020 | An issue was discovered in Navigate CMS through 2.8.7. It allows XSS because of a lack of purify calls in lib/packages/websites/website.class.php. |
| CVE-2020-13796 | Media (6.1) | 0.68% | — | 3 jun 2020 | An issue was discovered in Navigate CMS through 2.8.7. It allows XSS because of a lack of purify calls in lib/packages/structure/structure.class.php. |
| CVE-2020-13795 | Media (5.3) | 1.8% | — | 3 jun 2020 | An issue was discovered in Navigate CMS through 2.8.7. It allows Directory Traversal because lib/packages/templates/template.class.php mishandles ../ and ..\ substrings. |
| CVE-2018-18029 | Media (5.4) | 0.58% | — | 9 oct 2018 | Navigate CMS has Stored XSS via the navigate.php Title field in an edit action. |
| CVE-2018-17849 | Media (5.4) | 0.55% | — | 4 oct 2018 | Navigate CMS 2.8 has Stored XSS via a navigate_upload.php (aka File Upload) request with a multipart/form-data JavaScript payload. |
| CVE-2018-17553 | Alta (8.8) | 79% | — | 3 oct 2018 | An "Unrestricted Upload of File with Dangerous Type" issue with directory traversal in navigate_upload.php in Naviwebs Navigate CMS 2.8 allows authenticated attackers to achieve remote code execution via a POST request… |
| CVE-2018-17552 | Crítica (9.8) | 84% | — | 3 oct 2018 | SQL Injection in login.php in Naviwebs Navigate CMS 2.8 allows remote attackers to bypass authentication via the navigate-user cookie. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.