Логотип exploitDog
bind:CVE-2024-3748
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-3748

Количество 2

Количество 2

nvd логотип

CVE-2024-3748

больше 1 года назад

The SP Project & Document Manager WordPress plugin through 4.71 is missing validation in its upload function, allowing a user to manipulate the `user_id` to make it appear that a file was uploaded by another user

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-qvgf-wgjr-g932

больше 1 года назад

The SP Project & Document Manager WordPress plugin through 4.71 is missing validation in its upload function, allowing a user to manipulate the `user_id` to make it appear that a file was uploaded by another user

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-3748

The SP Project & Document Manager WordPress plugin through 4.71 is missing validation in its upload function, allowing a user to manipulate the `user_id` to make it appear that a file was uploaded by another user

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-qvgf-wgjr-g932

The SP Project & Document Manager WordPress plugin through 4.71 is missing validation in its upload function, allowing a user to manipulate the `user_id` to make it appear that a file was uploaded by another user

CVSS3: 6.5
0%
Низкий
больше 1 года назад

Уязвимостей на страницу