CVE-2020-13795: Naviwebs Navigate CMS
Medium severity, CVSS 5.3. EPSS: 1.8% chance of exploitation in the next 30 days.
An issue was discovered in Navigate CMS through 2.8.7. It allows Directory Traversal because lib/packages/templates/template.class.php mishandles ../ and ..\ substrings.
Affected products
- Naviwebs Navigate CMS: up to and including 2.8.7
Published 2020-06-03. Last modified 2026-06-17.