Metrics
Affected Vendors & Products
Tue, 12 Aug 2025 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:portabilis:i-educar:*:*:*:*:*:*:*:* |
Tue, 12 Aug 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 12 Aug 2025 07:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Portabilis
Portabilis i-educar |
|
Vendors & Products |
Portabilis
Portabilis i-educar |
Sat, 09 Aug 2025 23:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar up to 2.9. This issue affects some unknown processing of the file /intranet/educar_usuario_lst.php. The manipulation of the argument nm_pessoa/matricula/matricula_interna leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Portabilis i-Educar educar_usuario_lst.php cross site scripting | |
Weaknesses | CWE-79 CWE-94 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-09T23:32:06.389Z
Updated: 2025-08-12T16:03:58.238Z
Reserved: 2025-08-09T05:11:17.292Z
Link: CVE-2025-8785

Updated: 2025-08-11T15:21:57.227Z

Status : Analyzed
Published: 2025-08-10T00:15:26.210
Modified: 2025-08-12T18:22:05.810
Link: CVE-2025-8785

No data.