Vulnerabilities (CVE)

Filtered by vendor White Shark Systems Project Subscribe
Filtered by product White Shark Systems
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-20469 1 White Shark Systems Project 1 White Shark Systems 2021-06-23 5.0 MEDIUM 7.5 HIGH
White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the log_edit.php files failing to filter the csa_to_user parameter, remote attackers can exploit the vulnerability to obtain database sensitive information.
CVE-2020-20471 1 White Shark Systems Project 1 White Shark Systems 2021-06-23 9.0 HIGH 8.8 HIGH
White Shark System (WSS) 1.3.2 has an unauthorized access vulnerability in default_user_edit.php, remote attackers can exploit this vulnerability to escalate to admin privileges.
CVE-2020-20473 1 White Shark Systems Project 1 White Shark Systems 2021-06-23 5.0 MEDIUM 7.5 HIGH
White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the control_task.php, control_project.php, default_user.php files failing to filter the sort parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.
CVE-2020-20474 1 White Shark Systems Project 1 White Shark Systems 2021-06-23 5.0 MEDIUM 7.5 HIGH
White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the default_task_edituser.php files failing to filter the csa_to_user parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.