PT-2025-31787 · Portabilis · I-Educar

Nmmorette

·

Publicado

2025-08-03

·

Atualizado

2025-08-03

·

CVE-2025-8510

CVSS v3.1

5.4

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Portabilis i-Educar version 2.10
Description A problematic vulnerability exists in Portabilis i-Educar 2.10. The Gerar function within the file ieducar/intranet/educar matricula lst.php is affected. Manipulation of the ref cod aluno argument can lead to cross-site scripting. The attack can be initiated remotely, and the exploit has been publicly disclosed.
Recommendations Apply the patch with identifier 82c288b9a4abb084bdfa1c0c4ef777ed45f98b46 to resolve this issue.

Exploit

Correção

XSS

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-8510

Produtos afetados

I-Educar