PT-2025-31787 · Portabilis · I-Educar

Nmmorette

·

Published

2025-08-03

·

Updated

2025-08-03

·

CVE-2025-8510

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Portabilis i-Educar version 2.10
Description A problematic vulnerability exists in Portabilis i-Educar 2.10. The Gerar function within the file ieducar/intranet/educar matricula lst.php is affected. Manipulation of the ref cod aluno argument can lead to cross-site scripting. The attack can be initiated remotely, and the exploit has been publicly disclosed.
Recommendations Apply the patch with identifier 82c288b9a4abb084bdfa1c0c4ef777ed45f98b46 to resolve this issue.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-8510

Affected Products

I-Educar