CVE-2021-24347
HIGH NUCLEISP Project & Document Manager <4.22 - Path Traversal
Title source: llmDescription
The SP Project & Document Manager WordPress plugin before 4.22 allows users to upload files, however, the plugin attempts to prevent php and other similar files that could be executed on the server from being uploaded by checking the file extension. It was discovered that php files could still be uploaded by changing the file extension's case, for example, from "php" to "pHP".
Exploits (1)
metasploit
WORKING POC
EXCELLENT
by Ron Jost · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/wp_plugin_sp_project_document_rce.rb
Nuclei Templates (1)
WordPress SP Project & Document Manager <4.22 - Authenticated Shell Upload
HIGHVERIFIEDby theamanrawat
References (3)
Scores
CVSS v3
8.8
EPSS
0.8060
EPSS Percentile
99.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-178
Status
published
Products (1)
smartypantsplugins/sp_project_\&_document_manager
< 4.22
Published
Jun 14, 2021
Tracked Since
Feb 18, 2026