在 mathurvishal 的 CloudClassroom-PHP-Project 项目(最高至 commit 5dadec098bfbbf3300d60c3494db3fb95b66e7be)中发现了一个安全漏洞。该漏洞影响了文件 addnewstudent.php 中的某个未知函数。攻击者可通过构造恶意输入引发 SQL 注入攻击。此攻击可远程发起,且相关利用代码已公开,可能被恶意利用。 该项目采用滚动发布模式以持续交付更新,因此受影响或已修复版本的具体版本号信息无法提供。研究人员已提前联系该项目的维护者披露
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| mathurvishal | CloudClassroom-PHP-Project | 5dadec098bfbbf3300d60c3494db3fb95b66e7be |
cpe:2.3:a:mathurvishal:cloudclassroom-php-project:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-100875 | 7.3 HIGH | mathurvishal CloudClassroom-PHP-Project updatedetailsfromfaculty.php sql injection |
| CVE-2026-100876 | 6.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project loginlinkstudent.php missing authentication |
| CVE-2026-100873 | 4.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project cross-site request forgery |
| CVE-2026-100877 | 4.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project registrationform.php cross site scripting |
No comments yet