在 mathurvishal 的 CloudClassroom-PHP-Project(截至提交版本 5dadec098bfbbf3300d60c3494db3fb95b66e7be)中发现了一个安全漏洞。该漏洞影响文件 中的某个未知函数。通过对参数 的恶意构造,可导致 SQL 注入攻击。该漏洞可能被远程利用,相关 exploit 已公开,可能被攻击者直接使用。 该产品采用滚动发布(rolling release)模式,持续交付更新,因此受影响的版本和已修复的版本均没有具体的版本号信息。供应商在披露初期已被联系,但
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| mathurvishal | CloudClassroom-PHP-Project | 5dadec098bfbbf3300d60c3494db3fb95b66e7be |
cpe:2.3:a:mathurvishal:cloudclassroom-php-project:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-100874 | 7.3 HIGH | mathurvishal CloudClassroom-PHP-Project addnewstudent.php sql injection |
| CVE-2026-100876 | 6.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project loginlinkstudent.php missing authentication |
| CVE-2026-100873 | 4.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project cross-site request forgery |
| CVE-2026-100877 | 4.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project registrationform.php cross site scripting |
No comments yet