1
I Use This!
Activity Not Available
Analyzed about 1 year ago. based on code collected about 1 year ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
CVE-2021-43481 Critical Apr 20, 2022 An SQL Injection vulnerability exists in Webtareas 2.4p3 and earlier via the $uq HTTP POST parameter in editapprovalstage.php.
2.4, 2.1, 1.12, 1.11, 1.9, v1.7, 1.6
CVE-2021-41920 High Oct 08, 2021 webTareas version 2.4 and earlier allows an unauthenticated user to perform Time and Boolean-based blind SQL Injection on the endpoint /includes/librar more...
2.4, 2.1, 1.12, 1.11, 1.9, v1.7, 1.6
CVE-2021-41919 High Oct 08, 2021 webTareas version 2.4 and earlier allows an authenticated user to arbitrarily upload potentially dangerous files without restrictions. This is working more...
2.4, 2.1, 1.12, 1.11, 1.9, v1.7, 1.6
CVE-2021-41918 Medium Oct 08, 2021 webTareas version 2.4 and earlier allows an authenticated user to inject arbitrary web script or HTML due to incorrect sanitization of user-supplied da more...
2.4, 2.1, 1.12, 1.11, 1.9, v1.7, 1.6
CVE-2021-41917 Medium Oct 08, 2021 webTareas version 2.4 and earlier allows an authenticated user to store arbitrary web script or HTML by creating or editing a client name in the client more...
2.4, 2.1, 1.12, 1.11, 1.9, v1.7, 1.6
CVE-2021-41916 High Oct 08, 2021 A Cross-Site Request Forgery (CSRF) vulnerability in webTareas version 2.4 and earlier allows a remote attacker to create a new administrative profile more...
2.4, 2.1, 1.12, 1.11, 1.9, v1.7, 1.6