SP Project & Document Manager

The Document, File & Media Manager plugin allows users to remotely manage and control an unlimited number of documents, files, media, videos, and images. Users can create folders and subfolders to organize and share client, student, and supplier documents. The plugin is easy to use and allows for template modifications. It also works with WordPress Multi Site. A premium version is available for purchase.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in SP Project & Document Manager 4.71

    Open

    A popular plugin for WordPress, called SP Project & Document Manager, has a security issue where unauthorized users can access and manipulate files in a different directory than intended. This can ha...

    Read More
  • Access violation vulnerability in SP Project & Document Manager 4.71

    Open

    The SP Project & Document Manager plugin for WordPress has a security issue that affects all versions up to and including 4.71. This vulnerability, known as Insecure Direct Object Reference, is cause...

    Read More
  • Access violation vulnerability in SP Project & Document Manager 4.71

    Open

    The SP Project & Document Manager plugin for WordPress has a security issue in all versions up to 4.71. This issue allows authenticated attackers with subscriber-level access or higher to upload file...

    Read More
  • Access violation vulnerability in SP Project & Document Manager 4.69

    Fixed

    The SP Project & Document Manager plugin for WordPress has a security issue that allows unauthorized individuals to access it without permission. This can happen in versions up to and including 4.69...

    Read More
  • Access violation vulnerability in SP Project & Document Manager 4.70

    Open

    The SP Project & Document Manager plugin for WordPress has a security issue that allows unauthorized changes to be made to data. This happens because there is no check to make sure the user has the r...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.71

    Open

    The SP Project & Document Manager plugin for WordPress has a security issue called SQL Injection. This means that there is a problem with the way the plugin handles a certain type of information. Att...

    Read More
  • Access violation vulnerability in SP Project & Document Manager 4.70

    Open

    The SP Project & Document Manager plugin for WordPress has a security issue that allows unauthorized people to access it. This is because it does not have a function to check if someone has the right...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.69

    Fixed

    The SP Project & Document Manager plugin for WordPress has a security issue known as SQL Injection. This occurs when malicious code is inserted into the software, allowing attackers to access sensiti...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.67

    Fixed

    The SP Project & Document Manager plugin for WordPress is not secure in versions up to and including 4.67. This means that people with a 'subscriber-level' access or higher can use a special parameter...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.67

    Fixed

    The SP Project & Document Manager plugin for WordPress has a security vulnerability which could allow attackers with administrator-level access to inject malicious web scripts into pages. This vulner...

    Read More
  • Access violation vulnerability in SP Project & Document Manager 4.67

    Fixed

    The SP Project & Document Manager plugin for WordPress has a security vulnerability in versions up to and including 4.67. This means that someone with access to the plugin, such as an authenticated u...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 2.6.0.0

    Fixed

    The SP Projects & Document Manager plugin for WordPress is a tool that can be used to organize various projects and documents. Unfortunately, versions up to, and including, 2.5.9.5 are vulnerable to ...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 2.5.9.5

    Fixed

    The SP Projects & Document Manager plugin for WordPress is vulnerable to a type of attack called SQL Injection in versions up to 2.5.9.5. This type of attack happens when user-supplied parameters are...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.25

    Fixed

    The SP Project & Document Manager WordPress plugin

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.59

    Fixed

    The SP Project & Document Manager plugin for WordPress is not secure in versions up to, and including, 4.59. An unknown parameter in the plugin has a vulnerability that allows an unauthenticated atta...

    Read More
  • Access violation vulnerability in SP Project & Document Manager 4.57

    Fixed

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.56

    Fixed

    The SP Project & Document Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery (also known as CSRF) in versions up to and including 4.56. This means that if an attacker can get a ...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 2.6.1.3

    Fixed

    The SP Projects & Document Manager plugin for WordPress may have a security vulnerability in versions up to and including 2.6.0.0. The vulnerability could allow attackers to upload any type of file t...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 2.5.9.5

    Fixed

    The SP Project & Document Manager plugin for WordPress is not secure in versions up to 2.5.9.5. Hackers can perform certain actions, such as changing the settings of the plugin, without needing to be...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 2.4.4

    Fixed

    The Smarty Pants Plugins SP Project and Document Manager plugin (sp-client-document-manager) version 2.4.1 and earlier for WordPress contains security flaws that allow remote attackers to execute unau...

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.24

    Fixed

    The SP Project & Document Manager WordPress plugin

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.22

    Fixed

    The SP Project & Document Manager WordPress plugin had a vulnerability that allowed users to upload files

    Read More
  • Input validation vulnerability in SP Project & Document Manager 4.59

    Fixed

    There is a security weakness in the Smartypants SP Project and Document Manager plugin (version 4.59 and below) that is used on WordPress websites. This weakness

    Read More