CVEs Blog | G5 Cyber Security

CVE-2020-20474 – White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vul

White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the default_task_edituser.php files failing to filter the csa_to_user parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-20474

Reference (s):

Exit mobile version