CVE-2020-13795
An issue was discovered in Navigate CMS through 2.8.7. It allows Directory Traversal because lib/packages/templates/template.class.php mishandles ../ and .. substrings.
Date published : 2020-06-03
http://packetstormsecurity.com/files/157940/Navigate-CMS-2.8.7-Directory-Traversal.html
https://github.com/NavigateCMS/Navigate-CMS/commit/88b41c7665ac7181be063b7a541dded7b207d9e7
