CVE-2020-20473: White Shark Systems Project White Shark Systems

High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.

White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the control_task.php, control_project.php, default_user.php files failing to filter the sort parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.

Affected products

Published 2021-06-21. Last modified 2026-06-17.