CVE-2024-57459

A time-based SQL injection vulnerability exists in mydetailsstudent.php in the CloudClassroom PHP Project 1.0. The myds parameter does not properly validate user input, allowing an attacker to inject arbitrary SQL commands.
Configurations

Configuration 1 (hide)

cpe:2.3:a:vishalmathur:cloudclassroom-php_project:1.0:*:*:*:*:*:*:*

History

13 Jun 2025, 16:29

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-02 16:15

Updated : 2025-06-13 16:29


NVD link : CVE-2024-57459

Mitre link : CVE-2024-57459

CVE.ORG link : CVE-2024-57459


JSON object : View

Products Affected

vishalmathur

  • cloudclassroom-php_project
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')