« Volver al listado

White Shark Systems Project

White Shark Systems Project White Shark Systems: vulnerabilidades y CVE

White Shark Systems Project White Shark Systems tiene 9 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE9
Últimos 12 meses0
Críticas1
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2020-20474Alta (7.5)1.7%—21 jun 2021
White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the default_task_edituser.php files failing to filter the csa_to_user parameter. Remote attackers can exploit the…
CVE-2020-20473Alta (7.5)1.7%—21 jun 2021
White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the control_task.php, control_project.php, default_user.php files failing to filter the sort parameter. Remote attackers can…
CVE-2020-20472Media (5.3)1.5%—21 jun 2021
White Shark System (WSS) 1.3.2 has a sensitive information disclosure vulnerability. The if_get_addbook.php file does not have an authentication operation. Remote attackers can obtain username information for all users…
CVE-2020-20471Alta (8.8)2.4%—21 jun 2021
White Shark System (WSS) 1.3.2 has an unauthorized access vulnerability in default_user_edit.php, remote attackers can exploit this vulnerability to escalate to admin privileges.
CVE-2020-20470Media (5.3)0.90%—21 jun 2021
White Shark System (WSS) 1.3.2 has web site physical path leakage vulnerability.
CVE-2020-20469Alta (7.5)1.7%—21 jun 2021
White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the log_edit.php files failing to filter the csa_to_user parameter, remote attackers can exploit the vulnerability to obtain…
CVE-2020-20468Media (6.5)0.50%—21 jun 2021
White Shark System (WSS) 1.3.2 is vulnerable to CSRF. Attackers can use the user_edit_password.php file to modify the user password.
CVE-2020-20467Media (6.5)1.2%—21 jun 2021
White Shark System (WSS) 1.3.2 is vulnerable to sensitive information disclosure via default_task_add.php, remote attackers can exploit the vulnerability to create a task.
CVE-2020-20466Crítica (9.8)1.8%—21 jun 2021
White Shark System (WSS) 1.3.2 is vulnerable to unauthorized access via user_edit_password.php, remote attackers can modify the password of any user.