Back

CVE-2005-3762

SQL injection vulnerability in the navigation module (navigationmodule) in Exponent CMS 0.96.3 and later versions allows remote attackers to execute arbitrary SQL commands via the parent parameter.

Published: Nov 22, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (5)

Vendor Product Version
exponent exponent 0.94
exponent exponent 0.95
exponent exponent 0.96.1
exponent exponent 0.96.3
exponent exponent 0.96.4

GitHub Security Advisory GHSA-jc86-5gcp-4hv4

SQL injection vulnerability in the navigation module (navigationmodule) in Exponent CMS 0.96.3...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.47%

Top 28% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub