A vulnerability was detected in Portabilis i-Educar up to 2.10. The affected element is an unknown function of the file /enrollment-history/. Performing manipulation results in improper access controls. The attack is possible to be carried out remotely. The exploit is now public and may be used.
Metrics
Affected Vendors & Products
References
History
Thu, 18 Sep 2025 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Portabilis
Portabilis i-educar |
|
| Vendors & Products |
Portabilis
Portabilis i-educar |
Wed, 17 Sep 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in Portabilis i-Educar up to 2.10. The affected element is an unknown function of the file /enrollment-history/. Performing manipulation results in improper access controls. The attack is possible to be carried out remotely. The exploit is now public and may be used. | |
| Title | Portabilis i-Educar enrollment-history access control | |
| Weaknesses | CWE-266 CWE-284 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-17T18:32:06.307Z
Updated: 2025-09-17T18:32:06.307Z
Reserved: 2025-09-17T07:04:49.482Z
Link: CVE-2025-10608
No data.
Status : Awaiting Analysis
Published: 2025-09-17T19:15:46.110
Modified: 2025-09-18T13:43:34.310
Link: CVE-2025-10608
No data.