在 mathurvishal 的 CloudClassroom-PHP-Project(截至提交版本 5dadec098bfbbf3300d60c3494db3fb95b66e7be)中发现一个弱点。该问题影响文件 makeresult.php 中的某个未知函数。对参数 makeid 的操纵可导致 SQL 注入漏洞。攻击者可从远程发起利用。该漏洞的利用代码已向公众公开,可能被用于实施攻击。 该产品采用持续交付和滚动发布机制,因此无法提供受影响或已更新版本的具体版本信息。供应商在披露初期已被联系,但未作出任何回应。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| mathurvishal | CloudClassroom-PHP-Project | 5dadec098bfbbf3300d60c3494db3fb95b66e7be |
cpe:2.3:a:mathurvishal:cloudclassroom-php-project:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-101013 | 7.3 HIGH | mathurvishal CloudClassroom-PHP-Project updateresultdetails.php sql injection |
| CVE-2026-100894 | 6.3 MEDIUM | mathurvishal CloudClassroom-PHP-Project updateguest.php sql injection |
No comments yet