ZeroHour

CVE-2024-57459

CVSS 3.1
7.3 high
EPSS
<1%p15
Published
()
Modified
Description

A time-based SQL injection vulnerability exists in mydetailsstudent.php in the CloudClassroom PHP Project 1.0. The myds parameter does not properly validate user input, allowing an attacker to inject arbitrary SQL commands.

Vendors
vishalmathur
Products
cloudclassroom-php project
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.