CVE-2016-9288: Exponentcms Exponent CMS
Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.
In framework/modules/navigation/controllers/navigationController.php in Exponent CMS v2.4.0 or older, the parameter "target" of function "DragnDropReRank" is directly used without any filtration which caused SQL injection. The payload can be used like this: /navigation/DragnDropReRank/target/1.
Affected products
- Exponentcms Exponent CMS: up to and including 2.4.0
Published 2016-11-11. Last modified 2026-06-17.