CVE-2024-57459
7.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Exploitability: 3.9 / Impact: 3.4
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
A time-based SQL injection vulnerability exists in mydetailsstudent.php in the CloudClassroom PHP Project 1.0. The myds parameter does not properly validate user input, allowing an attacker to inject arbitrary SQL commands.
Affected (1)
Products: Vishalmathur: Cloudclassroom Php Project
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.0 |
References (2)
Source: cve@mitre.org
Third Party Advisory
Timeline
No history available yet.