Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Navigate Cms HIGH 8.8
CVE-2020-37054

Navigate CMS 2.8.7 contains a cross-site request forgery vulnerability that allows attackers to upload malicious extensions through a crafted HTML pa…

No fix yet
Fix from $1,950 2026-01-30
Navigate Cms MEDIUM 6.5
CVE-2020-37053

Navigate CMS 2.8.7 contains an authenticated SQL injection vulnerability that allows attackers to leak database information by manipulating the 'sidx…

No fix yet
Fix from $1,600 2026-01-30
Navigate Cms HIGH 7.5
CVE-2021-44351

An arbitrary file read vulnerability exists in NavigateCMS 2.9 via /navigate/navigate_download.php id parameter.

No fix yet
Fix from $1,950 2022-01-06
Navigate Cms HIGH 8.8
CVE-2021-36455

SQL Injection vulnerability in Naviwebs Navigate CMS 2.9 via the quicksearch parameter in \lib\packages\comments\comments.php.

No fix yet
Fix from $1,950 2021-08-06
Navigatecms MEDIUM 5.4
CVE-2020-23654

NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) via the module "Shop."

No fix yet
Fix from $1,600 2020-08-26
Navigatecms MEDIUM 5.4
CVE-2020-23655

NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."

No fix yet
Fix from $1,600 2020-08-26
Navigatecms MEDIUM 5.4
CVE-2020-23656

NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Content."

No fix yet
Fix from $1,600 2020-08-26
Navigatecms MEDIUM 5.4
CVE-2020-23657

NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."

No fix yet
Fix from $1,600 2020-08-26
Navigate Cms HIGH 7.5
CVE-2020-14017

An issue was discovered in Navigate CMS 2.9 r1433. Sessions, as well as associated information such as CSRF tokens, are stored in cleartext files in …

No fix yet
Fix from $1,950 2020-06-24
Navigate Cms MEDIUM 6.1
CVE-2020-14018

An issue was discovered in Navigate CMS 2.9 r1433. There is a stored XSS vulnerability that is executed on the page to view users, and on the page to…

No fix yet
Fix from $1,600 2020-06-24
Navigate Cms MEDIUM 5.3
CVE-2020-14016

An issue was discovered in Navigate CMS 2.9 r1433. The forgot-password feature allows users to reset their passwords by using either their username o…

No fix yet
Fix from $1,600 2020-06-24
Navigate Cms HIGH 7.5
CVE-2020-14015

An issue was discovered in Navigate CMS 2.9 r1433. When performing a password reset, a user is emailed an activation code that allows them to reset t…

No fix yet
Fix from $1,950 2020-06-24
Navigate Cms MEDIUM 5.4
CVE-2020-14014

An issue was discovered in Navigate CMS 2.8 and 2.9 r1433. The query parameter fid on the resource navigate.php does not perform sufficient data vali…

No fix yet
Fix from $1,600 2020-06-24
Navigate Cms MEDIUM 5.4
CVE-2018-17849

Navigate CMS 2.8 has Stored XSS via a navigate_upload.php (aka File Upload) request with a multipart/form-data JavaScript payload.

No fix yet
Fix from $1,600 2018-10-04