Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3043▲ 582 respecto a la semana anterior
Críticas / altas1452▲ 283 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)393▲ 186 respecto a la semana anterior
29 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.5) | 0.25% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 28/9/2026 | 28/9/2026 | A security vulnerability has been detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected is an unknown function of the file updateresultdetails.php. Such manipulation of the argument editid leads to sql injection. The attack can be launched remotely. The exploit… | |
| Aplazada | Media (5.5) | 0.25% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 28/9/2026 | 1/10/2026 | A weakness has been identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file makeresult.php. This manipulation of the argument makeid causes sql injection. The attack can be initiated remotely. The exploit has been made available… | |
| Aplazada | Baja (2.1) | 0.30% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 28/9/2026 | 1/10/2026 | A vulnerability was identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This issue affects some unknown processing of the file updateguest.php. The manipulation of the argument gname leads to sql injection. The attack may be initiated remotely. The exploit is publicly… | |
| Aplazada | Baja (2.1) | 0.26% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 27/9/2026 | 28/9/2026 | A vulnerability was determined in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected by this vulnerability is an unknown functionality of the file registrationform.php. Executing a manipulation of the argument FName/LName/Addrs can lead to cross site scripting. The attack… | |
| Aplazada | Baja (2.1) | 0.28% | — | Vishalmathur Cloudclassroom-php-projectAI | 27/9/2026 | 30/9/2026 | A vulnerability was found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected is an unknown function of the file loginlinkstudent.php. Performing a manipulation of the argument umail results in missing authentication. Remote exploitation of the attack is possible. The… | |
| Aplazada | Media (5.5) | 0.25% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 27/9/2026 | 28/9/2026 | A vulnerability has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file updatedetailsfromfaculty.php. Such manipulation of the argument myfid leads to sql injection. The attack may be launched remotely. The exploit has been… | |
| Aplazada | Media (5.5) | 0.25% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 27/9/2026 | 28/9/2026 | A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This affects an unknown function of the file addnewstudent.php. This manipulation causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used. This product… | |
| Aplazada | Baja (2.1) | 0.21% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 27/9/2026 | 30/9/2026 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The impacted element is an unknown function. The manipulation results in cross-site request forgery. The attack can be launched remotely. The exploit is now public and may be used. This product does… | |
| Aplazada | Media (5.5) | 0.25% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 26/9/2026 | 28/9/2026 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file viewresult.php. Performing a manipulation of the argument seno results in sql injection. Remote exploitation of the attack is possible. The exploit is now… | |
| Aplazada | Media (5.5) | 0.39% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 26/9/2026 | 30/9/2026 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected is an unknown function of the file mydetailsfaculty.php. The manipulation of the argument myfid results in sql injection. The attack can be launched remotely. The exploit is now public and… | |
| Aplazada | Media (5.5) | 0.39% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 26/9/2026 | 28/9/2026 | A security vulnerability has been detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file updatedetailsfromstudent.php. The manipulation of the argument eno leads to sql injection. The attack can be initiated remotely. The exploit… | |
| Aplazada | Baja (2.1) | 0.42% | — | Vishalmathur Cloudclassroom-php-projectAI | 26/9/2026 | 28/9/2026 | A weakness has been identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This affects an unknown function of the file updatequery.php. Executing a manipulation of the argument queryx can lead to cross site scripting. It is possible to launch the attack remotely. The… | |
| Aplazada | Baja (2.1) | 0.19% | — | Vishalmathur Cloudclassroom-php-projectAI | 26/9/2026 | 30/9/2026 | A security flaw has been discovered in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The impacted element is an unknown function of the file /updateguest.php. Performing a manipulation of the argument gname/editassid results in sql injection. It is possible to initiate the… | |
| Aplazada | Baja (2) | 0.19% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 26/9/2026 | 28/9/2026 | A vulnerability was identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The affected element is an unknown function of the file managevideos2.php of the component Faculty Video Management. Such manipulation of the argument V_Title/V_Url/V_Remarks leads to cross site… | |
| Aplazada | Baja (2.1) | 0.30% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 29/9/2026 | A vulnerability has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected by this vulnerability is an unknown functionality of the file managevideos2.php. Such manipulation of the argument editassid leads to sql injection. The attack may be launched remotely.… | |
| Aplazada | Media (5.5) | 0.26% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 28/9/2026 | A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected is an unknown function of the file updatefaculty.php. This manipulation of the argument fid causes sql injection. The attack may be initiated remotely. The exploit has been published and may be… | |
| Aplazada | Baja (2.1) | 0.19% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 28/9/2026 | A vulnerability was detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file updatestudent.php of the component Student Update Functionality. The manipulation of the argument eno results in sql injection. The attack can be launched… | |
| Aplazada | Media (5.5) | 0.31% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 28/9/2026 | A security vulnerability has been detected in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This affects an unknown function of the file updatequery.php. The manipulation of the argument gid leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Aplazada | Media (5.5) | 0.51% | — | Mathurvishal Cloudclassroom PHP ProjectAI | 25/9/2026 | 29/9/2026 | A weakness has been identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The impacted element is an unknown function of the file loginlinkfaculty.php of the component Faculty Authentication. Executing a manipulation of the argument fid/pass can lead to sql injection. It… | |
| Analizada | Media (5.5) | 0.50% | — | Vishalmathur Cloudclassroom-php-project | 6/2/2026 | 17/6/2026 | A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file /postquerypublic.php of the component Post Query Details Page. This manipulation of the argument gnamex causes sql injection. The attack is possible to be… | |
| Aplazada | Media (6.5) | 0.24% | — | Vishalmathur Cloudclassroom-php-projectAI | 1/8/2025 | 17/6/2026 | A SQL Injection vulnerability exists in the takeassessment2.php file of CloudClassroom-PHP-Project 1.0. The Q4 POST parameter is not properly sanitized before being used in SQL queries. | |
| Modificada | Media (6.5) | 0.30% | — | Vishalmathur Cloudclassroom-php Project | 25/7/2025 | 5/7/2026 | CloudClassroom-PHP Project v1.0 was discovered to contain a SQL injection vulnerability via the viewid parameter. | |
| Analizada | Crítica (9.8) | 0.59% | — | Vishalmathur Cloudclassroom-php Project | 20/6/2025 | 17/6/2026 | A SQL Injection vulnerability was discovered in the askquery.php file of CloudClassroom-PHP Project v1.0. The squeryx parameter accepts unsanitized input, which is passed directly into backend SQL queries. | |
| Analizada | Crítica (9.8) | 0.57% | — | Vishalmathur Cloudclassroom-php Project | 18/6/2025 | 17/6/2026 | CloudClassroom-PHP-Project v1.0 is affected by an insecure credential transmission vulnerability. The application transmits passwords over unencrypted HTTP during the login process, exposing sensitive credentials to potential interception by network-based attackers. A remote attacker with access to the same network… | |
| Analizada | Crítica (9.8) | 0.63% | — | Vishalmathur Cloudclassroom-php Project | 18/6/2025 | 17/6/2026 | CloudClassroom-PHP-Project v1.0 contains a critical SQL Injection vulnerability in the loginlinkadmin.php component. The application fails to sanitize user-supplied input in the admin login form before directly including it in SQL queries. This allows unauthenticated attackers to inject arbitrary SQL payloads and… |