CVE-2020-20473
21.06.2021, 05:15
White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the control_task.php, control_project.php, default_user.php files failing to filter the sort parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.
Vendor | Product | Version |
---|---|---|
white_shark_systems_project | white_shark_systems | 1.3.2 |
𝑥
= Vulnerable software versions