Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-57423
HistoryJul 27, 2021 - 12:00 a.m.

Navigate CMS sql injection vulnerability (CNVD-2021-57423)

2021-07-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
5
navigate cms
sql injection
vulnerability
block-order parameter
block function
backend database
cnvd-2021-57423

EPSS

0.003

Percentile

69.0%

Navigate CMS is a powerful and intuitive content management system. sql injection vulnerability exists in the block-order parameter of the block function in Navigate CMS 2.9.4 and earlier versions. An attacker could exploit this vulnerability to execute arbitrary sql queries in the backend database.

EPSS

0.003

Percentile

69.0%

Related for CNVD-2021-57423