CVE-2020-20474: White Shark Systems Project White Shark Systems

High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.

White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the default_task_edituser.php files failing to filter the csa_to_user parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.

Affected products

Published 2021-06-21. Last modified 2026-06-17.