PT-2025-38244 · Portabilis · I-Educar

Marceloqz

·

Published

2025-09-17

·

Updated

2025-09-17

·

CVE-2025-10606

CVSS v2.0
5.0
VectorAV:N/AC:L/Au:N/C:N/I:P/A:N

A weakness has been identified in Portabilis i-Educar up to 2.10. This issue affects some unknown processing of the file /module/Configuracao/ConfiguracaoMovimentoGeral. This manipulation of the argument tipoacao causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be exploited.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-10606

Affected Products

I-Educar