📦 Webtareas

by Webtareas Project

🔍 What is Webtareas?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-43481

CRITICAL CVSS 9.8 Apr 20, 2022

This is a critical SQL injection vulnerability in Webtareas project management software. Attackers can inject malicious SQL commands via the $uq parameter in editapprovalstage.php, potentially comprom...

CVE-2023-53971

HIGH CVSS 8.8 Dec 22, 2025

WebTareas 2.4 contains an authenticated file upload vulnerability that allows attackers to upload malicious PHP files and execute arbitrary code on the server. This affects all installations of WebTar...

CVE-2023-53972

HIGH CVSS 7.5 Dec 22, 2025

CVE-2023-53972 is an unauthenticated SQL injection vulnerability in WebTareas 2.4 that allows attackers to manipulate database queries via the webTareasSID cookie parameter. Attackers can use error-ba...

CVE-2021-41916

HIGH CVSS 8.8 Oct 8, 2021

A CSRF vulnerability in webTareas version 2.4 and earlier allows attackers to trick authenticated administrators into unknowingly creating new administrative profiles and adding users to them. This af...

CVE-2021-41919

HIGH CVSS 8.8 Oct 8, 2021

CVE-2021-41919 is an unrestricted file upload vulnerability in webTareas that allows authenticated users to upload dangerous files via the profile picture upload functionality. This enables attackers ...