VYPR

Webtareas

by Webtareas Project

CVEs (27)

  • CVE-2022-44953MedDec 2, 2022
    risk 0.35cvss 5.4epss 0.00

    webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /linkedcontent/listfiles.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name field after clicking…

  • CVE-2021-36609MedJun 16, 2022
    risk 0.35cvss 5.4epss 0.00

    Cross Site Scripting (XSS) vulnerability in webTareas 2.2p1 via the Name field to /linkedcontent/editfolder.php.

  • CVE-2021-36608MedJun 16, 2022
    risk 0.35cvss 5.4epss 0.00

    Cross Site Scripting (XSS) vulnerability in webTareas 2.2p1 via the Name field to /projects/editproject.php.

  • CVE-2021-41918MedOct 8, 2021
    risk 0.35cvss 5.4epss 0.01

    webTareas version 2.4 and earlier allows an authenticated user to inject arbitrary web script or HTML due to incorrect sanitization of user-supplied data and achieve a Reflected Cross-Site Scripting attack against the platform users and administrators. The issue affects every…

  • CVE-2021-41917MedOct 8, 2021
    risk 0.35cvss 5.4epss 0.01

    webTareas version 2.4 and earlier allows an authenticated user to store arbitrary web script or HTML by creating or editing a client name in the clients section, due to incorrect sanitization of user-supplied data and achieve a Stored Cross-Site Scripting attack against the…

  • CVE-2020-25734MedSep 18, 2020
    risk 0.35cvss 5.3epss 0.02

    webTareas through 2.1 allows files/Default/ Directory Listing.

  • CVE-2020-23660MedAug 26, 2020
    risk 0.35cvss 5.4epss 0.01

    webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search."

Page 2 of 2