Metrics
Affected Vendors & Products
Thu, 18 Sep 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:portabilis:i-educar:*:*:*:*:*:*:*:* |
Mon, 15 Sep 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 15 Sep 2025 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Portabilis
Portabilis i-educar |
|
Vendors & Products |
Portabilis
Portabilis i-educar |
Sat, 13 Sep 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A weakness has been identified in Portabilis i-Educar up to 2.10. Impacted is an unknown function of the file /intranet/educar_modulo_cad.php. This manipulation of the argument nm_tipo/descricao causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited. | |
Title | Portabilis i-Educar educar_modulo_cad.php cross site scripting | |
Weaknesses | CWE-79 CWE-94 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-13T18:02:05.431Z
Updated: 2025-09-15T15:40:31.253Z
Reserved: 2025-09-12T14:26:45.735Z
Link: CVE-2025-10372

Updated: 2025-09-15T15:40:26.752Z

Status : Analyzed
Published: 2025-09-13T18:15:31.937
Modified: 2025-09-18T20:43:27.753
Link: CVE-2025-10372

No data.