Vulnerability index

Browse CVEs

18 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Webtareas HIGH 8.8
CVE-2023-53971

WebTareas 2.4 contains a file upload vulnerability that allows authenticated users to upload malicious PHP files through the chat photo upload functi…

No fix yet
Fix from $1,950 2025-12-22
Webtareas HIGH 7.5
CVE-2023-53972

WebTareas 2.4 contains a SQL injection vulnerability in the webTareasSID cookie parameter that allows unauthenticated attackers to manipulate databas…

No fix yet
Fix from $1,950 2025-12-22
Webtareas MEDIUM 5.4
CVE-2022-44960

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /general/search.php?searchtype=simple. This vul…

No fix yet
Fix from $1,600 2022-12-02
Webtareas MEDIUM 5.4
CVE-2022-44961

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /forums/editforum.php. This vulnerability allow…

No fix yet
Fix from $1,600 2022-12-02
Webtareas MEDIUM 5.4
CVE-2022-44962

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /calendar/viewcalendar.php. This vulnerability …

No fix yet
Fix from $1,600 2022-12-02
Webtareas MEDIUM 5.4
CVE-2022-44953

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /linkedcontent/listfiles.php. This vulnerabilit…

No fix yet
Fix from $1,600 2022-12-02
Webtareas MEDIUM 5.4
CVE-2022-44954

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /contacts/listcontacts.php. This vulnerability …

No fix yet
Fix from $1,600 2022-12-02
Webtareas MEDIUM 5.4
CVE-2022-44955

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the Chat function. This vulnerability allows attackers to exe…

No fix yet
Fix from $1,600 2022-12-02
Webtareas MEDIUM 5.4
CVE-2022-44956

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /projects/listprojects.php. This vulnerability …

No fix yet
Fix from $1,600 2022-12-02
Webtareas MEDIUM 5.4
CVE-2022-44957

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /clients/listclients.php. This vulnerability al…

No fix yet
Fix from $1,600 2022-12-02
Webtareas MEDIUM 5.4
CVE-2022-44959

webtareas 2.4p5 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /meetings/listmeetings.php. This vulnerability …

No fix yet
Fix from $1,600 2022-12-02
Webtareas CRITICAL 9.8
CVE-2022-44290

webTareas 2.4p5 was discovered to contain a SQL injection vulnerability via the id parameter in deleteapprovalstages.php.

Mitigation only
Fix from $2,300 2022-12-02
Webtareas CRITICAL 9.8
CVE-2022-44291

webTareas 2.4p5 was discovered to contain a SQL injection vulnerability via the id parameter in phasesets.php.

Mitigation only
Fix from $2,300 2022-12-02
Webtareas MEDIUM 5.4
CVE-2021-36608

Cross Site Scripting (XSS) vulnerability in webTareas 2.2p1 via the Name field to /projects/editproject.php.

No fix yet
Fix from $1,600 2022-06-16
Webtareas MEDIUM 5.4
CVE-2021-36609

Cross Site Scripting (XSS) vulnerability in webTareas 2.2p1 via the Name field to /linkedcontent/editfolder.php.

No fix yet
Fix from $1,600 2022-06-16
Webtareas MEDIUM 6.5
CVE-2020-23069

Path Traversal vulneraility exists in webTareas 2.0 via the extpath parameter in general_serv.php, which could let a malicious user read arbitrary fi…

No fix yet
Fix from $1,600 2021-08-18
Webtareas MEDIUM 5.4
CVE-2020-23660

webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search."

No fix yet
Fix from $1,600 2020-08-26
Webtareas MEDIUM 6.1
CVE-2020-14973

The loginForm within the general/login.php webpage in webTareas 2.0p8 suffers from a Reflected Cross Site Scripting (XSS) vulnerability via the query…

No fix yet
Fix from $1,600 2020-06-22