VYPR
Medium severity5.4NVD Advisory· Published Jun 24, 2020· Updated Jun 17, 2026

CVE-2020-14014

CVE-2020-14014

Description

An issue was discovered in Navigate CMS 2.8 and 2.9 r1433. The query parameter fid on the resource navigate.php does not perform sufficient data validation and/or encoding, making it vulnerable to reflected XSS.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:naviwebs:navigate_cms:2.8:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:naviwebs:navigate_cms:2.8:*:*:*:*:*:*:*
    • cpe:2.3:a:naviwebs:navigate_cms:2.9:r1433:*:*:*:*:*:*
  • Navigate CMS/Navigate CMSdescription
  • Range: 2.8, 2.9 r1433

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.