CVE-2023-53972
EUVD-2023-6023422.12.2025, 22:16
WebTareas 2.4 contains a SQL injection vulnerability in the webTareasSID cookie parameter that allows unauthenticated attackers to manipulate database queries. Attackers can exploit error-based and time-based blind SQL injection techniques to extract database information and potentially access sensitive system data.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| webtareas_project | webtareas | 2.4 |
𝑥
= Vulnerable software versions