Known Vulnerabilities for products from Webtareas Project
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Webtareas Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-44962 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /calendar/viewcalendar.... | Not Provided | 2022-12-02 | 2026-07-09 |
| CVE-2022-44961 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /forums/editforum.php. ... | Not Provided | 2022-12-02 | 2026-07-05 |
| CVE-2022-44960 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /general/search.php?sea... | Not Provided | 2022-12-02 | 2026-07-05 |
| CVE-2022-44959 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /meetings/listmeetings.... | Not Provided | 2022-12-02 | 2026-07-09 |
| CVE-2022-44957 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /clients/listclients.ph... | Not Provided | 2022-12-02 | 2026-07-05 |
| CVE-2022-44956 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /projects/listprojects.... | Not Provided | 2022-12-02 | 2026-07-05 |
| CVE-2022-44955 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the Chat function. This vulnerability... | Not Provided | 2022-12-02 | 2026-07-09 |
| CVE-2022-44954 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /contacts/listcontacts.... | Not Provided | 2022-12-02 | 2026-07-05 |
| CVE-2022-44953 json | webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /linkedcontent/listfile... | Not Provided | 2022-12-02 | 2026-07-05 |
| CVE-2022-44291 json | webTareas 2.4p5 was discovered to contain a SQL injection vulnerability via the id parameter in phasesets.php. | Not Provided | 2022-12-02 | 2026-07-09 |
| CVE-2022-44290 json | webTareas 2.4p5 was discovered to contain a SQL injection vulnerability via the id parameter in deleteapprovalstages.php. | Not Provided | 2022-12-02 | 2026-07-09 |
| CVE-2021-43481 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 9.8 - CRITICAL | 2022-04-20 | 2022-09-09 |
| CVE-2021-41920 json | webTareas version 2.4 and earlier allows an unauthenticated user to perform Time and Boolean-based blind SQL Injection on the... | 7.5 - HIGH | 2021-10-08 | 2021-10-15 |
| CVE-2021-41919 json | webTareas version 2.4 and earlier allows an authenticated user to arbitrarily upload potentially dangerous files without rest... | 8.8 - HIGH | 2021-10-08 | 2021-10-15 |
| CVE-2021-41918 json | webTareas version 2.4 and earlier allows an authenticated user to inject arbitrary web script or HTML due to incorrect saniti... | 5.4 - MEDIUM | 2021-10-08 | 2021-10-15 |
| CVE-2021-41917 json | webTareas version 2.4 and earlier allows an authenticated user to store arbitrary web script or HTML by creating or editing a... | 5.4 - MEDIUM | 2021-10-08 | 2021-10-15 |
| CVE-2021-41916 json | A Cross-Site Request Forgery (CSRF) vulnerability in webTareas version 2.4 and earlier allows a remote attacker to create a n... | 8.8 - HIGH | 2021-10-08 | 2021-10-15 |
| CVE-2021-36609 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.4 - MEDIUM | 2022-06-16 | 2022-06-27 |
| CVE-2021-36608 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.4 - MEDIUM | 2022-06-16 | 2022-06-27 |
| CVE-2020-25735 json | webTareas through 2.1 allows XSS in clients/editclient.php, extensions/addextension.php, administration/add_announcement.php,... | 6.1 - MEDIUM | 2020-09-18 | 2023-11-07 |
Known software with vulnerabilities from Webtareas Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Webtareas Project | Webtareas | 2.0 |