Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-24868


Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smartypants SP Project & Document Manager.This issue affects SP Project & Document Manager: from n/a through 4.69.


Published

2024-02-28T13:15:08.673

Last Modified

2025-03-04T14:49:30.510

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-89

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application smartypantsplugins sp_project_\&_document_manager < 4.70 Yes

References