CVE-2020-20474: White Shark Systems Project White Shark Systems
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the default_task_edituser.php files failing to filter the csa_to_user parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.
Affected products
- White Shark Systems Project White Shark Systems: version 1.3.2 only
Published 2021-06-21. Last modified 2026-06-17.