CVE-2021-24347

HIGH NUCLEI

SP Project & Document Manager <4.22 - Path Traversal

Title source: llm

Description

The SP Project & Document Manager WordPress plugin before 4.22 allows users to upload files, however, the plugin attempts to prevent php and other similar files that could be executed on the server from being uploaded by checking the file extension. It was discovered that php files could still be uploaded by changing the file extension's case, for example, from "php" to "pHP".

Exploits (1)

metasploit WORKING POC EXCELLENT
by Ron Jost · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/wp_plugin_sp_project_document_rce.rb

Nuclei Templates (1)

WordPress SP Project & Document Manager <4.22 - Authenticated Shell Upload
HIGHVERIFIEDby theamanrawat

Scores

CVSS v3 8.8
EPSS 0.8060
EPSS Percentile 99.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-178
Status published
Products (1)
smartypantsplugins/sp_project_\&_document_manager < 4.22
Published Jun 14, 2021
Tracked Since Feb 18, 2026