Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
webtareas project webtareas 2.4 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2021-43481
An SQL Injection vulnerability exists in Webtareas 2.4p3 and previous versions via the $uq HTTP POST parameter in editapprovalstage.php.
Webtareas Project Webtareas 2.4
Webtareas Project Webtareas
5.4
CVSSv3
CVE-2022-44953
webtareas 2.4p5 exists to contain a cross-site scripting (XSS) vulnerability in the component /linkedcontent/listfiles.php. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Name field after clicking "A...
Webtareas Project Webtareas 2.4
5.4
CVSSv3
CVE-2022-44954
webtareas 2.4p5 exists to contain a cross-site scripting (XSS) vulnerability in the component /contacts/listcontacts.php. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Last Name field after clicking &quo...
Webtareas Project Webtareas 2.4
5.4
CVSSv3
CVE-2022-44955
webtareas 2.4p5 exists to contain a cross-site scripting (XSS) vulnerability in the Chat function. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Messages field.
Webtareas Project Webtareas 2.4
5.4
CVSSv3
CVE-2022-44957
webtareas 2.4p5 exists to contain a cross-site scripting (XSS) vulnerability in the component /clients/listclients.php. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Name field.
Webtareas Project Webtareas 2.4
5.4
CVSSv3
CVE-2022-44959
webtareas 2.4p5 exists to contain a cross-site scripting (XSS) vulnerability in the component /meetings/listmeetings.php. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Name field.
Webtareas Project Webtareas 2.4
5.4
CVSSv3
CVE-2022-44960
webtareas 2.4p5 exists to contain a cross-site scripting (XSS) vulnerability in the component /general/search.php?searchtype=simple. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Search field.
Webtareas Project Webtareas 2.4
5.4
CVSSv3
CVE-2022-44961
webtareas 2.4p5 exists to contain a cross-site scripting (XSS) vulnerability in the component /forums/editforum.php. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Name field.
Webtareas Project Webtareas 2.4
5.4
CVSSv3
CVE-2022-44962
webtareas 2.4p5 exists to contain a cross-site scripting (XSS) vulnerability in the component /calendar/viewcalendar.php. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Subject field.
Webtareas Project Webtareas 2.4
9.8
CVSSv3
CVE-2022-44290
webTareas 2.4p5 exists to contain a SQL injection vulnerability via the id parameter in deleteapprovalstages.php.
Webtareas Project Webtareas 2.4
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48693
CVE-2024-30851
CVE-2024-34460
CVE-2024-2887
local
CVE-2024-27956
remote code execution
CVE-2024-34475
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »