Metrics
Affected Vendors & Products
Thu, 18 Sep 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Portabilis
Portabilis i-educar |
|
| Vendors & Products |
Portabilis
Portabilis i-educar |
Wed, 17 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 17 Sep 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Portabilis i-Educar up to 2.10. This affects an unknown function of the file /intranet/educar_funcao_cad.php of the component Editar Função Page. This manipulation of the argument abreviatura/tipoacao causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited. | |
| Title | Portabilis i-Educar Editar Função educar_funcao_cad.php cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-17T11:02:08.196Z
Updated: 2025-09-17T13:06:04.090Z
Reserved: 2025-09-17T05:53:51.668Z
Link: CVE-2025-10591
Updated: 2025-09-17T13:05:56.568Z
Status : Awaiting Analysis
Published: 2025-09-17T11:15:32.520
Modified: 2025-09-17T14:18:55.093
Link: CVE-2025-10591
No data.