The SP Project & Document Manager WordPress plugin prior to 4.58 uses an easily guessable path to store user files, bad actors could use that to access other users' sensitive files.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
smartypantsplugins sp project & document manager |