A vulnerability was found in Portabilis i-Educar up to 2.9.0. It has been classified as problematic. This affects an unknown part of the file /module/Api/Diario of the component API Endpoint. The manipulation leads to authorization bypass. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
Sun, 10 Aug 2025 02:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Portabilis i-Educar up to 2.9.0. It has been classified as problematic. This affects an unknown part of the file /module/Api/Diario of the component API Endpoint. The manipulation leads to authorization bypass. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Portabilis i-Educar API Endpoint Diario authorization | |
Weaknesses | CWE-285 CWE-639 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-10T02:02:05.666Z
Updated: 2025-08-10T02:02:05.666Z
Reserved: 2025-08-09T05:11:28.794Z
Link: CVE-2025-8789

No data.

Status : Awaiting Analysis
Published: 2025-08-10T03:15:32.073
Modified: 2025-08-11T18:32:48.867
Link: CVE-2025-8789

No data.