Vishalmathur
vishalmathur
14 CVEs • 4 products
Products (4)
Click to collapseToggle
Products (4)
Click to collapse
CVEs (14)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Vishalmathur 1Cloudclassroom Php Project Apr 29, 2026 Feb 6, 2026 5.5 MEDIUM· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file /postquerypublic.php of the component Post Query Details Page....Show more |
1Vishalmathur 1Institute Of Current Students Dec 12, 2025 Nov 20, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Institute-of-Current-Students v1.0 contains a time-based blind SQL injection vulnerability in the mydetailsstudent.php endpoint. The `myds` GET parameter is not adequately sanitized before being used in SQL queries. |
1Vishalmathur 1Online Artwork And Fine Arts Project Sep 11, 2025 Aug 20, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A SQL injection vulnerability exists in the id2 parameter of the cancel_booking.php page in Online Artwork and Fine Arts MCA Project 1.0. A remote attacker can inject arbitrary SQL queries, leading to database enumeratio...Show more |
CloudClassroom-PHP-Project 1.0 contains a reflected Cross-site Scripting (XSS) vulnerability in the email parameter of the postquerypublic endpoint. Improper sanitization allows an attacker to inject arbitrary JavaScript...Show more |
A SQL Injection vulnerability exists in the takeassessment2.php endpoint of the CloudClassroom-PHP-Project 1.0, where the Q5 POST parameter is directly embedded in SQL statements without sanitization. |
1Vishalmathur 1Cloudclassroom Php Project Aug 7, 2025 Jul 25, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 CloudClassroom-PHP Project v1.0 was discovered to contain a SQL injection vulnerability via the viewid parameter. |
1Vishalmathur 1Institute Of Current Students Oct 9, 2025 Jul 25, 2025 N/A· v4 6.1 MEDIUM· v3 N/A· v2 A reflected cross-site scripting (XSS) vulnerability exists in Institute-of-Current-Students v1.0 via the email parameter in the /postquerypublic endpoint. The application fails to properly sanitize user input before ref...Show more |
1Vishalmathur 1Cloudclassroom Php Project Jun 26, 2025 Jun 20, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A SQL Injection vulnerability was discovered in the askquery.php file of CloudClassroom-PHP Project v1.0. The squeryx parameter accepts unsanitized input, which is passed directly into backend SQL queries. |
1Vishalmathur 1Cloudclassroom Php Project Jul 9, 2025 Jun 18, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 CloudClassroom-PHP-Project v1.0 is affected by an insecure credential transmission vulnerability. The application transmits passwords over unencrypted HTTP during the login process, exposing sensitive credentials to pote...Show more |
1Vishalmathur 1Cloudclassroom Php Project Jul 9, 2025 Jun 18, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 CloudClassroom-PHP-Project v1.0 contains a critical SQL Injection vulnerability in the loginlinkadmin.php component. The application fails to sanitize user-supplied input in the admin login form before directly including...Show more |
1Vishalmathur 1Cloudclassroom Php Project Jul 2, 2025 Jun 9, 2025 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Cross-Site Scripting (XSS) vulnerability exists in askquery.php via the eid parameter in the CloudClassroom PHP Project. This allows remote attackers to inject arbitrary JavaScript in the context of a victim s browser se...Show more |
1Vishalmathur 1Cloudclassroom Php Project Jun 13, 2025 Jun 2, 2025 N/A· v4 7.3 HIGH· v3 N/A· v2 SQL injection vulnerability in the registrationform endpoint of CloudClassroom-PHP-Project v1.0. The pass parameter is vulnerable due to improper input validation, allowing attackers to inject SQL queries. |
1Vishalmathur 1Cloudclassroom Php Project Jun 13, 2025 Jun 2, 2025 N/A· v4 7.3 HIGH· v3 N/A· v2 A time-based SQL injection vulnerability exists in mydetailsstudent.php in the CloudClassroom PHP Project 1.0. The myds parameter does not properly validate user input, allowing an attacker to inject arbitrary SQL comman...Show more |
1Vishalmathur 1Cloudclassroom Php Project Apr 7, 2025 Feb 26, 2025 N/A· v4 6.1 MEDIUM· v3 N/A· v2 A Cross Site Scripting vulnerability in CloudClassroom-PHP Project v1.0 allows a remote attacker to execute arbitrary code via the exid parameter of the assessment function. |