
CVE-2020-37054 Navigate CMS 2.8.7 contains a cross-site request forgery vulnerability that allows attackers to upload malicious extensions through a crafted HTML page. Attackers can… https://www.cve.org/CVERecord?id=CVE-2020-37054
Post summary
CVE‑2020‑37054 is a CSRF flaw in Navigate CMS 2.8.7, allowing attackers to upload malicious extensions through crafted HTML pages; no exploit code, active exploitation, or patch information is reported.
