在 mathurvishal CloudClassroom-PHP-Project 中检测到一个漏洞,该漏洞存在于截至提交哈希 5dadec098bfbbf3300d60c3494db3fb95b66e7be 的版本中。受影响的元素为一个未知函数。该漏洞可导致跨站请求伪造(CSRF)。攻击者可远程发起利用。目前,该漏洞的利用代码已公开,可能被恶意使用。由于该产品不使用版本控制系统,因此无法提供受影响和未受影响版本的具体信息。供应商在披露早期已被联系,但未作任何回应。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| mathurvishal | CloudClassroom-PHP-Project | 5dadec098bfbbf3300d60c3494db3fb95b66e7be |
cpe:2.3:a:mathurvishal:cloudclassroom-php-project:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-100875 | 7.3 HIGH | mathurvishal CloudClassroom-PHP-Project updatedetailsfromfaculty.php sql injection |
| CVE-2026-100874 | 7.3 HIGH | mathurvishal CloudClassroom-PHP-Project addnewstudent.php sql injection |
| CVE-2026-100876 | 6.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project loginlinkstudent.php missing authentication |
| CVE-2026-100877 | 4.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project registrationform.php cross site scripting |
No comments yet