PT-2025-38249 · Portabilis · I-Educar

Marceloqz

·

Published

2025-09-17

·

Updated

2025-09-17

·

CVE-2025-10608

CVSS v3.1
6.3
VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

A vulnerability was detected in Portabilis i-Educar up to 2.10. The affected element is an unknown function of the file /enrollment-history/. Performing manipulation results in improper access controls. The attack is possible to be carried out remotely. The exploit is now public and may be used.

Exploit

Fix

Improper Access Control

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

CVE-2025-10608

Affected Products

I-Educar