CVE-2020-14017

HIGH

Navigate CMS 2.9 r1433 - Unauthenticated Cleartext Storage of Sensitive Information in Session Files

Title source: llm
STIX 2.1

Description

An issue was discovered in Navigate CMS 2.9 r1433. Sessions, as well as associated information such as CSRF tokens, are stored in cleartext files in the directory /private/sessions. An unauthenticated user could use a brute-force approach to attempt to identify existing sessions, or view the contents of this file to discover details about a session.

References (1)

Core 1
Core References
Exploit, Third Party Advisory x_refsource_misc
https://blog.sean-wright.com/navigate-cms/

Scores

CVSS v3 7.5
EPSS 0.0117
EPSS Percentile 63.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-312
Status published
Products (1)
naviwebs/navigate_cms 2.9 r1433
Published Jun 24, 2020
Tracked Since Feb 18, 2026