SQL Injection Vulnerability in CloudClassroom-PHP-Project by mathurvishal
CVE-2026-101013
6.9MEDIUM
What is CVE-2026-101013?
A critical security vulnerability has been found in the mathurvishal CloudClassroom-PHP-Project affecting the updateresultdetails.php file. This vulnerability arises from improper handling of the 'editid' argument, leading to a SQL injection that can be exploited remotely. The potential exploit is publicly known, and the lack of versioning in the product complicates the identification of specific affected or unaffected releases. Despite early notifications to the vendor regarding this security risk, there has been no response to date.
Affected Version(s)
CloudClassroom-PHP-Project 5dadec098bfbbf3300d60c3494db3fb95b66e7be
