Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-1551


The SP Project & Document Manager WordPress plugin before 4.58 uses an easily guessable path to store user files, bad actors could use that to access other users' sensitive files.


Published

2022-07-25T13:15:08.217

Last Modified

2024-11-21T06:40:57.110

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-425

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application smartypantsplugins sp_project_\&_document_manager < 4.58 Yes

References