Naviwebs operates a narrowly scoped content management system product line centered on Navigate CMS, which despite its limited portfolio achieves notable prominence in the vulnerability landscape. Vulnerabilities affecting this vendor skew toward serious outcomes, with an elevated share reaching critical severity, and demonstrate a moderate tendency toward public exploit availability. The exposure recurs consistently through application-layer weakness classes including cross-site scripting, SQL injection, path traversal, unrestricted file uploads, and weak password recovery mechanisms—all characteristic flaws in web-facing CMS platforms where input handling and access control are critical. Defenders should prioritize Navigate CMS deployments for patching and treat this vendor's advisories as having upstream implications for sites and integrations that depend on the platform. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Naviwebs over time
Signals from CVEs in this vendor scope (34 CVEs).
34 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-17552CRITICAL SQL Injection in login.php in Naviwebs Navigate CMS 2.8 allows remote attackers to bypass authentication via the navigate-user cookie. | Oct 3, 2018 | 9.8 | 88 | NO | YES |
CVE-2018-17553HIGH An "Unrestricted Upload of File with Dangerous Type" issue with directory traversal in navigate_upload.php in Naviwebs Navigate CMS 2.8 allows authenticated attackers to achieve re | Oct 3, 2018 | 8.8 | 85 | NO | YES |
CVE-2022-28117MEDIUM A Server-Side Request Forgery (SSRF) in feed_parser class of Navigate CMS v2.9.4 allows remote attackers to force the application to make arbitrary requests via injection of arbitr | Apr 28, 2022 | 4.9 | 49 | NO | YES |
CVE-2021-37477CRITICAL In NavigateCMS version 2.9.4 and below, function in `structure.php` is vulnerable to sql injection on parameter `children_order`, which results in arbitrary sql query execution in | Jul 26, 2021 | 9.8 | 31 | NO | NO |
CVE-2020-14067CRITICAL The install_from_hash functionality in Navigate CMS 2.9 does not consider the .phtml extension when examining files within a ZIP archive that may contain PHP code, in check_upload | Jun 15, 2020 | 9.8 | 31 | NO | NO |
CVE-2021-37478CRITICAL In NavigateCMS version 2.9.4 and below, function `block` is vulnerable to sql injection on parameter `block-order`, which results in arbitrary sql query execution in the backend da | Jul 26, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-37476CRITICAL In NavigateCMS version 2.9.4 and below, function in `product.php` is vulnerable to sql injection on parameter `id` through a post request, which results in arbitrary sql query exec | Jul 26, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-37475CRITICAL In NavigateCMS version 2.9.4 and below, function in `templates.php` is vulnerable to sql injection on parameter `template-properties-order`, which results in arbitrary sql query ex | Jul 26, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-37473CRITICAL In NavigateCMS version 2.9.4 and below, function in `product.php` is vulnerable to sql injection on parameter `products-order` through a post request, which results in arbitrary sq | Jul 26, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-36455HIGH SQL Injection vulnerability in Naviwebs Navigate CMS 2.9 via the quicksearch parameter in \lib\packages\comments\comments.php. | Aug 6, 2021 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (34 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Naviwebs.
Media articles that mention a CVE ID that affects a product developed by Naviwebs — matched by CVE ID, not by vendor name.