Description
A time-based SQL injection vulnerability exists in mydetailsstudent.php in the CloudClassroom PHP Project 1.0. The myds parameter does not properly validate user input, allowing an attacker to inject arbitrary SQL commands.
Published: 2025-06-02
Score: 7.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-54626 A time-based SQL injection vulnerability exists in mydetailsstudent.php in the CloudClassroom PHP Project 1.0. The myds parameter does not properly validate user input, allowing an attacker to inject arbitrary SQL commands.
History

Fri, 13 Jun 2025 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Vishalmathur
Vishalmathur cloudclassroom-php Project
CPEs cpe:2.3:a:vishalmathur:cloudclassroom-php_project:1.0:*:*:*:*:*:*:*
Vendors & Products Vishalmathur
Vishalmathur cloudclassroom-php Project

Mon, 02 Jun 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 02 Jun 2025 17:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-89
Metrics cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'}


Mon, 02 Jun 2025 16:15:00 +0000

Type Values Removed Values Added
Description A time-based SQL injection vulnerability exists in mydetailsstudent.php in the CloudClassroom PHP Project 1.0. The myds parameter does not properly validate user input, allowing an attacker to inject arbitrary SQL commands.
References

Subscriptions

Vishalmathur Cloudclassroom-php Project
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-06-02T16:13:08.948Z

Reserved: 2025-01-09T00:00:00.000Z

Link: CVE-2024-57459

cve-icon Vulnrichment

Updated: 2025-06-02T16:12:44.766Z

cve-icon NVD

Status : Analyzed

Published: 2025-06-02T16:15:27.390

Modified: 2025-06-13T16:29:02.383

Link: CVE-2024-57459

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses